1.0.0
1 years ago
1 years ago
Known vulnerabilities in the relative-ci-agent package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
relative-ci-agent is a malicious package. While this package might be attempting to impersonate a valid organization, there is no connection between that organization and this package authorship. The bin script in this package collects environment variables from process.env and sends them to a remote endpoint controlled by a malicious actor. How to fix Malicious Package? Avoid using all malicious instances of the | * |