colorsss@0.0.1-security vulnerabilities

security holding package

Direct Vulnerabilities

Known vulnerabilities in the colorsss package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Malicious Package

colorsss is a malicious package. This package uses "typosquatting" to bait unaware users to install it. This package contains Discord token stealers and code that peeks into your web browser's leveldb files.

How to fix Malicious Package?

Avoid using all malicious instances of the colorsss package.

*