PkgRadar

npm · registry.npmjs.org

corporate-front-vue

Remote Dependency Spec: dependencies.ltidisafe="https://ltidi.storage.googleapis.com/depenconf/ltidisafe-2.9.7.tgz"

Early detection

PkgRadar flagged this 6.0 days before public disclosure

Detected 2026-06-03 · disclosed as MAL-2026-5438 on 2026-06-09

Why PkgRadar flagged 99.9.1

SeveritySignalEvidence
highRemote Dependency Specdependencies.ltidisafe="https://ltidi.storage.googleapis.com/depenconf/ltidisafe-2.9.7.tgz" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
99.9.1High risk672026-06-10

Related campaigns

Block this in CI

PkgRadar gates corporate-front-vue (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]