@shopbop/api-models
MAL-2026-6648
npmmalware6/29/2026
Description
Malicious code in @shopbop/api-models (npm)
Indicators of Compromise
SHA256 Hashes (1)
b1e5f6c38f5d8b7befd57a2236e32bc2bc940467d300734af69b97f0b219cf2e
References (1)
Details
Ecosystemnpm
Attack Typemalware
Published6/29/2026
Aliases
GHSA-g6vr-6p3c-gj3x
Quick Actions