GMS-2020-448: Malicious Package
(updated )
of rate-map
contains malicious code. The malware breaks functionality of the purescript-installer
package by rewriting code of the dl-tar
dependency. ## Recommendation
There is no indication of further compromise.
References
Detect and mitigate GMS-2020-448 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →