@uipath/widget.sdk

MAL-2026-3587

npmmalware5/12/2026
Description

Malicious code in @uipath/widget.sdk (npm)

Indicators of Compromise
SHA256 Hashes (1)
8e72fd5223273f42c47db6b5b8217e2cdce8589d9cf9545621606c249facc6ff
Details
Ecosystemnpm
Attack Typemalware
Published5/12/2026
Aliases
GHSA-27w6-4p99-7x6q
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001