critical

Malware in npm package experian-analytics-components

malicious-version-published · active

The npm package experian-analytics-components has been identified as malicious. Any system where it was installed should be treated as fully compromised, and all secrets and keys on that system should be rotated immediately from a separate, clean machine.

Affected packages

Sources