VDB

GCVE-110-NPM-2026-032859

GCVE-110-NPM-2026-032859
Advisory Published
Vulnetix · Advisory published July 11, 2026
[IOC-STIX-MATCH] Malicious domain api.anthropic.com — referenced in quay-ai-factory/scripts.js — matched: { name: 'Alice Coder', type: 'CODER', provider: 'anthropic', model: 'claude-sonnet-4-20250514', status: 'IDLE', baseURL: process.env.ANTHROPIC_API_URL ?? 'https://api.anthropic.com' },

Weaknesses (CWE)

CWE-506Embedded Malicious Code

Affected Products

VendorProductVersionsPlatforms
npmquay-ai-factory* (affected)

References

advisory
web

Browse GCVE Records

74,557 records in the GCVE database · Updated July 23, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›