react-vite-sync

MAL-2026-747

npmmalware2/4/2026
Description

Malicious code in react-vite-sync (npm)

Indicators of Compromise
SHA256 Hashes (2)
971cc1d747c2d072e4a3cc272143be37bbd2162968dfd682012890e87cda5625
c9f5300073ebcda0869cf258bc5c567c6afc40942b14d14a97bfeaa2eaff1b9c
Details
Ecosystemnpm
Attack Typemalware
Published2/4/2026
Affected Versions
0
Aliases
GHSA-6c8f-x4v8-69pr
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001