VDB
KO

MAL-2026-5971

Malicious code in @public-for-cdao/hooks (npm)

Details

--- _-= Per source details. Do not edit below this line.=-_

## Source: ossf-package-analysis (8611956b7ad849ba2a98285fa33897da931deb28e74f30bc8a6299d567852c51) The OpenSSF Package Analysis project identified '@public-for-cdao/hooks' @ 99.99.99 (npm) as malicious.

It is considered malicious because:

- The package communicates with a domain associated with malicious activity.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm / @public-for-cdao/hooks

No fixed version published yet for @public-for-cdao/hooks (npm). Pin to a known-safe version or switch to an alternative.