MAL-2025-41825

    Dashboard / Malicious Package / MAL-2025-41825

    MAL-2025-41825

    Published: 29 Aug 2025Last Modified: 15 Sept 2025

    Summary: Malicious code in @callcenter-frontend/api (npm)

    Details: The package communicates with a domain associated with malicious activity. Source: ossf-package-analysis (924eeec3ead0762c18ae254572edc5e76a3a27d3003bdea3c80eb6902fccf7c8) The OpenSSF Package Analysis project identified '@callcenter-frontend/api' @ 99.0.2025091-3.10 (npm) as malicious. It is considered malicious because: - The package communicates with a domain associated with malicious activity.

    References:

    Affected packages

    Package

    Name: @callcenter-frontend/api

    Purl: pkg:npm/%40callcenter-frontend/api

    Affected ranges

    Type: SEMVER

    Events:

    Introduced- 99.0.0
    Fixed -None

    Affected versions

    99.0.2025091-3.10
    MAL-2025-41825 | CVE-DB