@immobiliarelabs/backstage-plugin-gitlab-backend
MAL-2026-6527
npmmalware6/26/2026
Description
Malicious code in @immobiliarelabs/backstage-plugin-gitlab-backend (npm)
Indicators of Compromise
SHA256 Hashes (5)
096fc86987f4a25a5fb6572968e0c7309d71ed3e6ab16c239427de98c7d30ae7
bd391194516a2446c71eb338fd1f072d8fa9f271541a1444d2b744bda4e17f6b
746900059ab269f17ea3ddbaec4bd970351a4aebf3d9fe39a1abf6d6a0c4e1b0
b76bfd2d462dd636f50ea252e3302cbc709493e28d15bcc6ed7fb78596ffa5d4
bc110d148a9d2fc837102bd10f2c465850d7134796fb23d718de1a9cc05221cf
References (5)
https://www.npmjs.com/package/@immobiliarelabs/backstage-plugin-gitlab-backend/v/6.13.1OSVhttps://www.npmjs.com/package/@immobiliarelabs/backstage-plugin-gitlab-backend/v/5.2.1OSVhttps://www.npmjs.com/package/@immobiliarelabs/backstage-plugin-gitlab-backend/v/4.0.2OSVhttps://www.npmjs.com/package/@immobiliarelabs/backstage-plugin-gitlab-backend/v/3.0.3OSVhttps://www.npmjs.com/package/@immobiliarelabs/backstage-plugin-gitlab-backend/v/7.0.2OSV
Details
Ecosystemnpm
Attack Typemalware
Published6/26/2026
Quick Actions