BlueWallet / react-native-blue-crypto

9 stars 9 forks source link

Malaware warning in NPM audit #5

Open dlippy opened 3 weeks ago

dlippy commented 3 weeks ago

Just FYI someone is trying to upload a modified version of this package to NPM that is compromised. NPM audit returns:

react-native-blue-crypto * Severity: critical Malware in react-native-blue-crypto - https://github.com/advisories/GHSA-9gh9-3fw4-pv6j No fix available node_modules/react-native-blue-crypto

Overtorment commented 1 week ago

yes, im aware, we dont use npm, we use this package directly from github