PkgRadar

Malware advisory

MAL-2025-25728

Malicious code in lyu_pkg (npm)

4 affected releases in the PkgRadar corpus · published 2025-08-14 · upstream advisory

Affected packages

PackageEcosystemVersionVerdictScanned (UTC)
lyu_pkgnpm0.0.2High risk2026-06-29
lyu_pkgnpm0.0.3High risk2026-06-29
lyu_pkgnpm0.0.1High risk2026-06-29
lyu_pkgnpm0.0.1-securityHigh risk2026-06-29

PkgRadar blocks these releases at the CI gate before they reach your build. Start free or see all advisories.

MAL-2025-25728 — malicious package advisory | PkgRadar