{"id":"MAL-2026-2771","summary":"Malicious code in icims-express-dot-engine (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (6cc7ed2f685a8199818c3090faeaf9536fa49cced26ffde16ff9061c729e3143)\nThe package icims-express-dot-engine was found to contain malicious code.\n","modified":"2026-04-23T21:16:29.047600Z","published":"2026-04-16T10:01:05Z","database_specific":{"malicious-packages-origins":[{"import_time":"2026-04-16T15:39:04.342295775Z","source":"reversing-labs","id":"RLMA-2026-01972","modified_time":"2026-04-16T10:01:05Z","sha256":"a97c8141771b6de62ef6718b03c5b12cac67dd78621396056637a9c1d98b0319","versions":["999.0.0"]},{"import_time":"2026-04-23T20:49:01.240759999Z","source":"amazon-inspector","modified_time":"2026-04-23T20:43:56Z","sha256":"6cc7ed2f685a8199818c3090faeaf9536fa49cced26ffde16ff9061c729e3143","versions":["999.0.0"]}]},"affected":[{"package":{"name":"icims-express-dot-engine","ecosystem":"npm","purl":"pkg:npm/icims-express-dot-engine"},"versions":["999.0.0"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/icims-express-dot-engine/MAL-2026-2771.json"}}],"schema_version":"1.7.5","credits":[{"name":"Amazon Inspector","contact":["actran@amazon.com"],"type":"FINDER"},{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}