PkgRadar

Malware advisory

MAL-2024-2327

Malicious code in eslint-plugin-cdp-project (npm)

1 affected release in the PkgRadar corpus · published 2024-06-25 · upstream advisory

Affected packages

Every release listed here is malicious per this advisory and is blocked at the CI gate. The Static scancolumn is PkgRadar’s independent static-analysis result for that release — some malicious releases score low on static signals alone, which is why we also mirror the advisory as authoritative.

PackageEcosystemVersionStatic scanScanned (UTC)
eslint-plugin-cdp-projectnpm0.0.1-securityHigh risk2026-08-23

PkgRadar blocks these releases at the CI gate before they reach your build. Start free or see all advisories.

Malicious code in eslint-plugin-cdp-project (npm) — malware advisory MAL-2024-2327 | PkgRadar