VDB
GCVE-110-NPM-2026-032280
GCVE-110-NPM-2026-032280
Advisory Published
[IOC-STIX-MATCH] Malicious domain platform.claude.com — referenced in @cnwenf/occ/scripts.js — matched: console.warn(`Using Claude with ${body.model} and 'thinking.type=enabled' is deprecated. Use 'thinking.type=adaptive' instead which results in better model performance in our testing: https://platform.claude.com/docs/en/build-with-claude/adaptive-thinking`);
Weaknesses (CWE)
CWE-506Embedded Malicious Code
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| npm | @cnwenf/occ | * (affected), * (affected), * (affected) | — |
Browse GCVE Records
74,496 records in the GCVE database · Updated July 23, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.