MAL-2026-14244
Malicious code in gemini-cli-a2a-server (npm)
Details
--- _-= Per source details. Do not edit below this line.=-_
## Source: amazon-inspector (5eb13d8d28e4c8363ceabe294b988cd42a82f1875af3f2a30310232154664afd) On npm install, the package's postinstall script collects host identifiers (os.hostname(), platform, arch, Node version, and package/lifecycle metadata) and POSTs them via https.request to the hardcoded endpoint https://onpx9s3x.instances.poc.jchunt.top/gemini-cli-a2a-server. The package name mimics a private Google Gemini CLI a2a-server component, and a source.txt reference in the tarball points at that internal package — consistent with a dependency-confusion probe that pings out from any environment that inadvertently resolves this public name instead of the intended private one.
Are you affected?
Enter the version of the package you're using.
Affected packages
No fixed version published yet for gemini-cli-a2a-server (npm). Pin to a known-safe version or switch to an alternative.