Описание
Malicious Package in discord.js-user
All versions of discord.js-user contain malicious code. The package uploads the user's Discord token to a remote server.
Recommendation
Remove the package from your environment. Ensure any compromised tokens are invalidated.
Пакеты
Наименование
discord.js-user
npm
Затронутые версииВерсия исправления
>= 0.0.0
Отсутствует
9.8 Critical
CVSS3
Дефекты
CWE-506
9.8 Critical
CVSS3
Дефекты
CWE-506