Description
`fabric-js` was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/487
Related Vulnerabilities
CVE-2021-42697 Vulnerability in maven package com.typesafe.akka:akka-http-core_2.13
CVE-2022-46907 Vulnerability in maven package org.apache.jspwiki:jspwiki-main
CVE-2021-23624 Vulnerability in npm package dotty
CVE-2020-10719 Vulnerability in maven package io.undertow:undertow-core
CVE-2017-9805 Vulnerability in maven package org.apache.struts:struts2-core