Description
noderequest was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/512
Related Vulnerabilities
CVE-2021-37694 Vulnerability in npm package @asyncapi/java-spring-cloud-stream-template
CVE-2021-33502 Vulnerability in npm package normalize-url
CVE-2022-21802 Vulnerability in npm package grapesjs
CVE-2022-31172 Vulnerability in npm package @openzeppelin/contracts-upgradeable
CVE-2022-40955 Vulnerability in maven package org.apache.inlong:manager-pojo