critical

Malware in npm package @tenforce/toolbox-fontmap

malicious-version-published · active

The npm package @tenforce/toolbox-fontmap has been identified as containing malware. Any system with this package installed should be considered fully compromised, and all secrets and keys on that machine should be rotated immediately from a separate, clean computer.

Affected packages

Sources