trade-in-lib
MAL-2026-2609
npmmalware4/13/2026
Description
Malicious code in trade-in-lib (npm)
Indicators of Compromise
SHA256 Hashes (1)
927f61fc76a553ba10121fbae7bc4961b0d67d52ab41498d9b0b232a4c2362f7
References (1)
Details
Ecosystemnpm
Attack Typemalware
Published4/13/2026
Affected Versions
0
Aliases
GHSA-m6r9-8g63-rpqp
Quick Actions