0.0.1-security
8 months ago
8 months ago
Known vulnerabilities in the @ibm-ptc/greet-me package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
@ibm-ptc/greet-me is a malicious package. that is designed to exfiltrate data and spawn a reverse shell on any system that installs it. An attacker could open ports to the target machines, forcing communication and enabling a complete takeover of the target machine. How to fix Embedded Malicious Code? Avoid using all malicious instances of the | * |