Description
`fabric-js` was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/487
Related Vulnerabilities
CVE-2019-18797 Vulnerability in maven package org.webjars.npm:node-sass
CVE-2013-1966 Vulnerability in maven package org.apache.struts.xwork:xwork-core
CVE-2022-29172 Vulnerability in maven package org.webjars.bower:auth0-lock
CVE-2019-10282 Vulnerability in maven package hudson.plugins.klaros:klaros-testmanagement
CVE-2016-8739 Vulnerability in maven package org.apache.cxf:cxf-rt-rs-extension-providers