Description
tkinter was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/500
Related Vulnerabilities
CVE-2023-45811 Vulnerability in npm package deobfuscator
CVE-2020-2183 Vulnerability in maven package org.jenkins-ci.plugins:copyartifact
CVE-2016-4000 Vulnerability in maven package org.python:jython-standalone
CVE-2023-29641 Vulnerability in npm package editor.md
CVE-2017-2651 Vulnerability in maven package org.jenkins-ci.plugins:mailer