PkgRadar

npm · registry.npmjs.org

@adobe/asset-compute-devtool

Reverse Shell, Credential file access, Large Javascript Payload

Why PkgRadar flagged 3.0.0

SeveritySignalEvidence
highReverse Shellpackage/client-build/06c04803898b399da8498d30b82e1b0d.js

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
3.0.0High risk352026-06-24
4.0.0High risk352026-06-24
2.3.1High risk352026-06-24
2.3.0High risk352026-06-24

Block this in CI

PkgRadar gates @adobe/asset-compute-devtool (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @adobe/[email protected]
@adobe/asset-compute-devtool — npm security scan | PkgRadar