{"id":"MAL-2026-2803","summary":"Malicious code in tailwind-configuration (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (60061f038f742f65f6876c278646b1b91d880677e6ba9dff2c87ea021f5b6aa9)\nThe package tailwind-configuration was found to contain malicious code.\n","modified":"2026-04-23T21:18:00.288779Z","published":"2026-04-16T10:19:18Z","database_specific":{"malicious-packages-origins":[{"import_time":"2026-04-16T15:39:18.057857299Z","source":"reversing-labs","versions":["1.0.1"],"id":"RLMA-2026-02046","sha256":"12c20b1e64e9ad2b7e8b576753836742bcfaa39234608a02cf2106c06061d7f7","modified_time":"2026-04-16T10:19:18Z"},{"import_time":"2026-04-23T20:49:08.060552047Z","source":"amazon-inspector","versions":["1.0.1"],"sha256":"60061f038f742f65f6876c278646b1b91d880677e6ba9dff2c87ea021f5b6aa9","modified_time":"2026-04-23T20:43:56Z"}]},"affected":[{"package":{"name":"tailwind-configuration","ecosystem":"npm","purl":"pkg:npm/tailwind-configuration"},"versions":["1.0.1"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/tailwind-configuration/MAL-2026-2803.json"}}],"schema_version":"1.7.5","credits":[{"name":"Amazon Inspector","contact":["actran@amazon.com"],"type":"FINDER"},{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}