Loading HuntDB...

GHSA-5hxw-r847-qfwp

GitHub Security Advisory

opencv.js is malware

✓ GitHub Reviewed HIGH Has CVE

Advisory Details

opencv.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.

Affected Packages

npm opencv.js
Affected versions: 0 (last affected: 1.2.1)

Related CVEs

Key Information

GHSA ID
GHSA-5hxw-r847-qfwp
Published
August 29, 2018 11:47 PM
Last Modified
September 7, 2023 6:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
npm
Primary Package
opencv.js
GitHub Reviewed
✓ Yes

Dataset

Last updated: July 6, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.