jwtdotenv

MAL-2026-821

npmmalware2/9/2026
Description

Malicious code in jwtdotenv (npm)

Indicators of Compromise
SHA256 Hashes (2)
30cfddaf043abb6549e21d69c8b779ffe56c9db1013cd885c6ee955a14ec4aeb
bafc6df342437c7ecab65fac0d10d4f37deb16e983a008ae6d87ee4dd368b4c6
Details
Ecosystemnpm
Attack Typemalware
Published2/9/2026
Affected Versions
0
Aliases
GHSA-8mjx-w3ff-mv8m
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001