VDB
KO

MAL-2026-14123

Malicious code in @oyo_tech/oyochat_user (npm)

Details

--- _-= Per source details. Do not edit below this line.=-_

## Source: ossf-package-analysis (db0f726175ab94e18345e8926ec8de1f76a684ac09429303323c3ceb0d14aea4) The OpenSSF Package Analysis project identified '@oyo_tech/oyochat_user' @ 100.0.0 (npm) as malicious.

It is considered malicious because:

- The package communicates with a domain associated with malicious activity.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm / @oyo_tech/oyochat_user

No fixed version published yet for @oyo_tech/oyochat_user (npm). Pin to a known-safe version or switch to an alternative.