@usealloy/api-contract
MAL-2026-2969
npmmalware4/22/2026
Description
Malicious code in @usealloy/api-contract (npm)
Indicators of Compromise
SHA256 Hashes (1)
52af9d0cbf58f8441b63a8611f0df9a0746be7863467d3e6cc9438e352b4300a
References (1)
Details
Ecosystemnpm
Attack Typemalware
Published4/22/2026
Affected Versions
0
Aliases
GHSA-733p-5g7w-hh7w
Quick Actions