1337qq-js@0.0.1-security vulnerabilities

security holding package

Direct Vulnerabilities

Known vulnerabilities in the 1337qq-js package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Malicious 󠅮󠅰󠅭Package

1337qq-js is a malicious package. All versions of 1337qq-js contain malicious code. The package exfiltrates sensitive information through install scripts. It targets UNIX systems. The information exfiltrated includes:

  • Environment variables
  • Running processes
  • /etc/hosts
  • uname -a
  • npmrc file

How to fix Malicious 󠅮󠅰󠅭Package?

Avoid using all malicious instances of the 1337qq-js package.

>=0.0.0