critical

Malware in npm package paypal-payouts-bridge

malicious-version-published · active

The npm package paypal-payouts-bridge has been flagged as malware. Any system where it was installed or run should be considered fully compromised, and all secrets and keys stored on that machine should be rotated immediately from a different computer.

Affected packages

Sources