Description
mysqljs was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/494
Related Vulnerabilities
CVE-2022-36891 Vulnerability in maven package org.jenkins-ci.plugins:deployer-framework
CVE-2023-33950 Vulnerability in maven package com.liferay.portal:release.portal.bom
CVE-2023-38698 Vulnerability in npm package @ensdomains/ens-contracts
CVE-2021-24033 Vulnerability in npm package react-dev-utils
CVE-2013-4390 Vulnerability in maven package org.apache.sling:org.apache.sling.auth.core