CRITICAL npm Malware
Malicious code in @dxcl/user-js (npm)
MAL-2026-10879 · GHSA-vwf5-f55j-6283
Published · Modified
Dependency scanning
Check whether @dxcl/user-js is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Description
__
References
Ready to move
Start Securing
Free, no credit card | First findings in minutes