Description
nodemssql was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/484
Related Vulnerabilities
CVE-2020-2254 Vulnerability in maven package io.jenkins.blueocean:blueocean-parent
CVE-2021-29469 Vulnerability in npm package redis
CVE-2017-12615 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2020-7601 Vulnerability in npm package gulp-scss-lint
CVE-2017-2598 Vulnerability in maven package org.jenkins-ci.main:jenkins-core