Description
opencv.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/505
Related Vulnerabilities
CVE-2019-12415 Vulnerability in maven package org.apache.poi:poi-ooxml
CVE-2021-25915 Vulnerability in npm package changeset
CVE-2019-19609 Vulnerability in npm package strapi
CVE-2020-10705 Vulnerability in maven package io.undertow:undertow-core
CVE-2020-9480 Vulnerability in maven package org.apache.spark:spark-network-shuffle_2.11