critical

Malware in npm package "justgetit"

malicious-version-published · active

The npm package "justgetit" has been identified as containing malware. Any system that installed or ran this package should be treated as fully compromised, with all secrets and keys rotated immediately from a separate, clean computer.

Affected packages

Sources