Description
openssl.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/504
Related Vulnerabilities
CVE-2023-25194 Vulnerability in maven package org.apache.kafka:kafka-clients
CVE-2017-16129 Vulnerability in npm package superagent
CVE-2020-7638 Vulnerability in npm package confinit
CVE-2018-17244 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2017-2613 Vulnerability in maven package org.jenkins-ci.main:jenkins-core