@emilgroup/payment-sdk-node
MAL-2026-2057
npmbackdoor3/22/2026
Description
Malicious code in @emilgroup/payment-sdk-node (npm)
Indicators of Compromise
SHA256 Hashes (3)
a3d77b932e5d166e3415f3de95d71aece4124580f4899c708e580be116cf15de
83fcb6922c65850eff14baf7a463c2b14b358ffebdc5a15c312ec7328a142407
69cbdb3e770ac8c8e6b29dd99ab70a58f46eae331baacec716e29d59b76c9f1e
Domains (1)
litellm.cloud
Details
Ecosystemnpm
Attack Typebackdoor
Published3/22/2026
Affected Versions
1.23.10
Aliases
GHSA-4r42-c7jf-m8rf
Quick Actions