Security Advisory
CVE-2017-16128
9.8
CRITICAL
Vulnerability Description
The module npm-script-demo opened a connection to a command and control server. It has been removed from the npm registry.
Published Date
June 7, 2018
Official Source
NIST NVD Advisory