-
Notifications
You must be signed in to change notification settings - Fork 2.1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Vulnerability in eslint-plugin-prebid 0.0.1 - Malicious Code Detected #11396
Comments
d0gukank
changed the title
Dependency Vulnerability Analysis -
Security Vulnerability in eslint-plugin-prebid Version 0.0.1 - Malicious Code Detected
Apr 24, 2024
d0gukank
changed the title
Security Vulnerability in eslint-plugin-prebid Version 0.0.1 - Malicious Code Detected
Vulnerability in eslint-plugin-prebid 0.0.1 - Malicious Code Detected
Apr 24, 2024
https://socket.dev/npm/package/eslint-plugin-prebid/maintainers/3.0.0 this is not someone associated with the project. |
1 task
Upgrading eslint will solve the issue wuith the plugin pointing to a local file, which seems to invite bad actors to publish |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Description
npm audit dependency analysis tool has identified a vulnerability in the eslint-plugin-prebid package version 0.0.1 and other packages. The analysis indicates that eslint-plugin-prebid package contains malicious code which could potentially compromise the project at
Prebid.js/plugins/eslint/package.json
Line 2 in be66a45
Also I have shared the report of npm audit.
The text was updated successfully, but these errors were encountered: