cfruitmaliciousxmlparser

MAL-2025-192546

npmmalware12/12/2025
Description

Malicious code in cfruitmaliciousxmlparser (npm)

Indicators of Compromise
SHA256 Hashes (3)
4c839905fe1bdbd371684c1b19db32c6f7ee7ce1888d2881a2c82e8507cbfc97
2e5eaaf8ade83c339f3b0892ac216af2a8acd0ff78ba33498568eae45f6cf905
cb84154af8e4b570b1b0a5ad818796e7a12c0f1a6c0cbf69bab2f17e584b0d22
Details
Ecosystemnpm
Attack Typemalware
Published12/12/2025
Aliases
GHSA-8g6q-xxph-xhc9SNYK-JS-CFRUITMALICIOUSXMLPARSER-14400614
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001