PkgRadar

Malware advisory

MAL-2026-5898

Malicious code in strict-engine-peer (npm)

2 affected releases in the PkgRadar corpus · published 2026-06-16 · upstream advisory

Affected packages

Every release listed here is malicious per this advisory and is blocked at the CI gate. The Static scancolumn is PkgRadar’s independent static-analysis result for that release — some malicious releases score low on static signals alone, which is why we also mirror the advisory as authoritative.

PackageEcosystemVersionStatic scanScanned (UTC)
strict-engine-peernpm1.0.0Low risk2026-07-10
strict-engine-peernpm22.18.0Low risk2026-07-09

PkgRadar blocks these releases at the CI gate before they reach your build. Start free or see all advisories.