express-session-handler

MAL-2026-14345

npmmalware8/21/2026
Description

Malicious code in express-session-handler (npm)

Indicators of Compromise
SHA256 Hashes (1)
0e94450f5541b39d8310a8b640dee027b0970db6e7cf724352726d49393bfb77
Details
Ecosystemnpm
Attack Typemalware
Published8/21/2026
Affected Versions
2.3.3
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001