| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| The parsejson module is vulnerable to regular expression denial of service when untrusted user input is passed into it to be parsed. |
| cross-env.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| nodesass was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| smb was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| shadowsock was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| mongose was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| proxy.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| http-proxy.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| crossenv was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| noderequest was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| nodemailer.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| nodemailer-js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| nodecaffe was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| nodeffmpeg was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| ffmepg was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| node-opencv was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| opencv.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| openssl.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| node-openssl was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| node-opensl was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |