npm
Malicious@yane88/workbuddy-01@1.0.2
Vulnerability report · Last retrieved from osv.dev October 7, 2026 at 10:33 AM UTC
OSV ID
MAL-2026-15665
Ecosystem
npm
Summary
The package was found to contain malicious code or consuming dependency that contains malicious code
Source: amazon-inspector (1dbb87f4a9b5e5482d4c8fdc2c448905f4a4df65feb64c3100385c616cf5470a)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.