Description
node-opensl was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/502
Related Vulnerabilities
CVE-2019-12418 Vulnerability in maven package org.apache.tomcat:tomcat-catalina-jmx-remote
CVE-2019-20921 Vulnerability in maven package org.webjars.npm:bootstrap-select
CVE-2020-5251 Vulnerability in npm package parse-server
CVE-2020-7614 Vulnerability in npm package npm-programmatic
CVE-2022-45400 Vulnerability in maven package org.jvnet.hudson.plugins:japex