Логотип exploitDog
bind:CVE-2025-54313
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-54313

Количество 3

Количество 3

redhat логотип

CVE-2025-54313

5 месяцев назад

eslint-config-prettier 8.10.1, 9.1.1, 10.1.6, and 10.1.7 has embedded malicious code for a supply chain compromise. Installing an affected package executes an install.js file that launches the node-gyp.dll malware on Windows.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-54313

5 месяцев назад

eslint-config-prettier 8.10.1, 9.1.1, 10.1.6, and 10.1.7 has embedded malicious code for a supply chain compromise. Installing an affected package executes an install.js file that launches the node-gyp.dll malware on Windows.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-f29h-pxvx-f335

5 месяцев назад

eslint-config-prettier, eslint-plugin-prettier, synckit, @pkgr/core, napi-postinstall have embedded malicious code

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2025-54313

eslint-config-prettier 8.10.1, 9.1.1, 10.1.6, and 10.1.7 has embedded malicious code for a supply chain compromise. Installing an affected package executes an install.js file that launches the node-gyp.dll malware on Windows.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-54313

eslint-config-prettier 8.10.1, 9.1.1, 10.1.6, and 10.1.7 has embedded malicious code for a supply chain compromise. Installing an affected package executes an install.js file that launches the node-gyp.dll malware on Windows.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-f29h-pxvx-f335

eslint-config-prettier, eslint-plugin-prettier, synckit, @pkgr/core, napi-postinstall have embedded malicious code

CVSS3: 7.5
0%
Низкий
5 месяцев назад

Уязвимостей на страницу