Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Malware in rxp-js? #53

Open
php3ch0 opened this issue Oct 18, 2022 · 2 comments
Open

Malware in rxp-js? #53

php3ch0 opened this issue Oct 18, 2022 · 2 comments

Comments

@php3ch0
Copy link

php3ch0 commented Oct 18, 2022

Just installed package and got a malware critical vulnerability notification

Picture 1

GHSA-p4fm-f928-rr26

If this a false positive? Please confirm

@icemouton
Copy link

icemouton commented Jul 31, 2024

This security notice is stil showing up on the latest version from this month.
image

image

Please advise ?

@ahumulescu
Copy link
Contributor

Hello,

The advisory is directly linked to the npm library (https://www.npmjs.com/package/rxp-js) which is not owned by Global Payments.

You would want to use the library like you would do it in the old days. Download the final build and reference it in your code via a script tag.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants