@onereach/ckeditor5-build-classic
MAL-2026-11594
npmmalware8/4/2026
Description
Malicious code in @onereach/ckeditor5-build-classic (npm)
Indicators of Compromise
SHA256 Hashes (2)
f076730d97e5c15e0f787a26f13b264c4405fc305c8c374d76c85eccfd394f0f
2fc5df0a4bc27158d3464496e005ab688fa4633191d2800dd89e03a30a4b6557
References (6)
https://socket.dev/blog/popular-npm-packages-in-the-keyv-and-cacheable-namespaces-compromised-in-active-supply-chainOSVhttps://www.aikido.dev/blog/keyv-and-friends-compromised-in-npm-supply-chain-attackOSVhttps://safedep.io/keyv-npm-supply-chain-compromise/OSVhttps://www.npmjs.com/package/@onereach/ckeditor5-build-classicOSVhttps://www.npmjs.com/package/@onereach/ckeditor5-build-classic/v/30.0.3OSVhttps://github.com/advisories/GHSA-wqx6-j493-j327OSV
Details
Ecosystemnpm
Attack Typemalware
Published8/4/2026
Aliases
GHSA-wqx6-j493-j327
Quick Actions