-
Notifications
You must be signed in to change notification settings - Fork 4
Description
Checkmarx (SCA): Vulnerable Package
Vulnerability: Read More about Cx65afcea4-5e85
Applications: yael's application
Checkmarx Project: Yoavast/CX-AST
Repository URL: https://github.com/Yoavast/CX-AST
Branch: main
Severity: MEDIUM
State: TO_VERIFY
Status: RECURRENT
Scan ID: b70b7227-90db-4075-88cb-4c196077be97
The Contributor of this package, npm user riaevangelist, previously seen corrupting one of his popular package node-ipc infected with a malicious payload. Read more
About
We recommend freezing this package's version in your manifest file or consider finding an alternative to this package.
Relying on code from an unreliable contributors could damage the integrity of the code built depends on it. There is a risk this package may be corrupted as well in future versions.
Additional Info