Description
babelcli was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/499
Related Vulnerabilities
CVE-2022-42890 Vulnerability in maven package org.apache.xmlgraphics:batik-script
CVE-2022-23945 Vulnerability in maven package org.apache.shenyu:shenyu-common
CVE-2022-39231 Vulnerability in npm package parse-server
CVE-2018-8006 Vulnerability in maven package org.apache.activemq:activemq-web-console