CYBERSECURITYTRACKER
TRACKING
Vulnerabilities

@hrmony/benefitverwaltung

Review this malicious package's identity, affected versions, and published evidence.

Fixed response action, not model-generated: Remove the listed versions, and rotate any secrets the package could reach.

MAL-2026-17257

@hrmony/benefitverwaltung in npm. Metadata and links only; package code and payload are never mirrored.

Loading the full malicious-package record.

Glossary