@tanstack/start-fn-stubs

MAL-2026-3488

npmmalware5/12/2026
Description

Malicious code in @tanstack/start-fn-stubs (npm)

Indicators of Compromise
SHA256 Hashes (1)
e25d3624c39cfe3dae76a5630525e72d3f0fe2f8eb1bbb44a0ff17c3a39d4fe2
Details
Ecosystemnpm
Attack Typemalware
Published5/12/2026
Aliases
GHSA-phm9-h72q-2rv5
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001