npm Update
2528Warning Date
Severity Level
Warning Number
Target Sector
15 November, 2020
● Critical
2020-2060
All
Description:
npm has released a security update to address a vulnerability in the following product:
- xpc.js
- 6.6.6
Threats:
The package ran a script that executes files containing Trojan malware.
Best practice and Recommendations:
The CERT team encourages users to review npm security advisory and apply the necessary update: