Description
proxy.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/515
Related Vulnerabilities
CVE-2017-12158 Vulnerability in maven package org.keycloak:keycloak-server-spi-private
CVE-2016-10750 Vulnerability in maven package com.hazelcast:hazelcast
CVE-2019-10471 Vulnerability in maven package org.jenkins-ci.plugins:libvirt-slave
CVE-2014-6393 Vulnerability in maven package org.webjars.npm:express
CVE-2022-45208 Vulnerability in maven package org.jeecgframework.boot:jeecg-module-system