@squawk/navaid-data
@squawk/navaid-data is identified in the SafeDep analysis "Mass Supply Chain Attack Hits TanStack, Mistral AI npm and PyPI Packages". Over 400 compromised npm package versions and at least 2 PyPI packages published in a coordinated supply chain attack targeting TanStack, Mistral AI, UiPath, OpenSearch, guardrails-ai, and dozens of other packages.
discovered 2026-05-12
Threat types
other
Malicious versions
- 0.6.4
- 0.6.5
- 0.6.6
- 0.6.7
- 0.6.8
