MAL-2023-1227
Dashboard / Malicious Package / MAL-2023-1227
MAL-2023-1227
Summary: Malicious code in lime-web-component-interfaces (npm)
Details: Source: checkmarx (94eb9bf47469857d8b3e3da68a34e320a0c7b1129a7b260fafe36dea5396cc0c) Malicious packages campaign since 2021 targeting developers, steals source code and secrets Source: ossf-package-analysis (a6bfa977d2643486a81b788470c6fb71063ec868d37982d1e875a8b4e0bc4e7e) The OpenSSF Package Analysis project identified 'lime-web-component-interfaces' @ 1.0.1 (npm) as malicious. It is considered malicious because: - The package communicates with a domain associated with malicious activity. - The package executes one or more commands associated with malicious behavior.
Affected packages
Package
Name: lime-web-component-interfaces
Purl: pkg:npm/lime-web-component-interfaces
Affected ranges
Type: SEMVER
Events:
