PkgRadar

Malware advisory

MAL-2026-5192

Malicious code in weavedb-contracts (npm)

1 affected release in the PkgRadar corpus · published 2026-06-04 · upstream advisory

Affected packages

PackageEcosystemVersionVerdictScanned (UTC)
weavedb-contractsnpm0.45.2High risk2026-06-10

PkgRadar blocks these releases at the CI gate before they reach your build. Start free or see all advisories.