@voiceflow/api-sdk

MAL-2025-191333

npmmalware11/25/2025
Description

Malicious code in @voiceflow/api-sdk (npm)

Indicators of Compromise
SHA256 Hashes (3)
f040fe222f828b54ca84bad088ccd74d5a02e259a772b88a69d74c54a7bd2680
4b7abda7e70d34bfcfab0ca83d946e98a44282fe3bfa5b12657715d9e1f8d9fe
e3e961a08f55ee9c09ea08f6e26ed609d489927fd347b2015b8c7a3074f6c439
Details
Ecosystemnpm
Attack Typemalware
Published11/25/2025
Aliases
GHSA-w6mp-8jg5-f9g7
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001