CYBERSECURITYTRACKER
TRACKING7,665 stories in this site build1,646 vulnerability news stories in this site build
Vulnerabilities

@espn-ping/react-dmed-oauth

Review this malicious package's identity, affected versions, and published evidence.

Fixed response action, not model-generated: Remove the listed versions, and rotate any secrets the package could reach.

MAL-2026-10401

@espn-ping/react-dmed-oauth in npm. Metadata and links only; package code and payload are never mirrored.

Loading the full malicious-package record.

Glossary