critical

Malware in npm package "python-utils" (GHSA-3c8h-wfcm-wpw5)

malicious-version-published · active

The npm package "python-utils" was published with malware. Any machine where it was installed should be treated as fully compromised, and all secrets and keys stored on that machine should be rotated immediately from a different computer.

Affected packages

Sources