—
MAL-2026-4836
Malicious code in nemo-reporter (npm)
Details
--- _-= Per source details. Do not edit below this line.=-_
## Source: ossf-package-analysis (6a4b651421d56ff7c35f6192795f0eb27038df786c20f2d585703229f5007952) The OpenSSF Package Analysis project identified 'nemo-reporter' @ 1.8.3 (npm) as malicious.
It is considered malicious because:
- The package communicates with a domain associated with malicious activity.
Are you affected?
Enter the version of the package you're using.
Affected packages
npm / nemo-reporter
No fixed version published yet for nemo-reporter (npm). Pin to a known-safe version or switch to an alternative.