MAL-2025-41830

    Dashboard / Malicious Package / MAL-2025-41830

    MAL-2025-41830

    Published: 29 Aug 2025Last Modified: 15 Sept 2025

    Summary: Malicious code in @callcenter-frontend/ui-components (npm)

    Details: The package communicates with a domain associated with malicious activity. Source: ossf-package-analysis (f7f41480a8be02c290f1d1b9915b4a57528a979a2736206adf8e3c701b44f846) The OpenSSF Package Analysis project identified '@callcenter-frontend/ui-components' @ 99.0.2025091-3.14 (npm) as malicious. It is considered malicious because: - The package communicates with a domain associated with malicious activity.

    References:

    Affected packages

    Package

    Name: @callcenter-frontend/ui-components

    Purl: pkg:npm/%40callcenter-frontend/ui-components

    Affected ranges

    Type: SEMVER

    Events:

    Introduced- 99.0.0
    Fixed -None

    Affected versions

    99.0.2025091-3.14
    99.0.2025091-3.2
    MAL-2025-41830 | CVE-DB