Description
node-opensl was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/502
Related Vulnerabilities
CVE-2020-24660 Vulnerability in npm package node-lemonldap-ng-handler
CVE-2018-13339 Vulnerability in maven package org.webjars.bower:angular-redactor
CVE-2016-10523 Vulnerability in npm package mqtt-packet
CVE-2017-16205 Vulnerability in npm package coffescript
CVE-2017-7688 Vulnerability in maven package org.apache.openmeetings:openmeetings-core