
Cloud Vulnerability DB
A community-led vulnerabilities database
The vulnerability GHSA-m5p4-7wf9-6w99 pertains to a malicious package named 'regenrator' in the npm ecosystem. This package was identified as malware and was published to the npm Registry for a brief period. The vulnerability was discovered and published to the GitHub Advisory Database on September 1, 2020, with the latest update on January 9, 2023. All versions of the package are considered malicious (GitHub Advisory).
The vulnerability has been assigned a Critical severity rating with a CVSS score of 9.8. The technical assessment reveals that the package operates with Network attack vector, Low attack complexity, requires No privileges, and needs No user interaction. The CVSS metrics indicate High impact on Confidentiality, Integrity, and Availability. The vulnerability is classified under CWE-506 (GitHub Advisory).
When executed, the malicious package connects to a Command and Control server to execute arbitrary commands on the compromised system. The package was specifically designed to exploit typosquatting, taking advantage of users who make typing mistakes when installing modules (GitHub Advisory).
The package is highly exploitable due to its design as a typosquatting attack vector, requiring no special privileges or user interaction beyond the initial installation mistake. The attack vector is network-based, with low complexity for execution (GitHub Advisory).
For systems where this package is discovered, it is recommended to immediately revoke and rotate all credentials found on the compromised machine. Additionally, the affected machine should be completely erased, and the Operating System should be reinstalled. There are no patched versions available as the entire package is malicious (GitHub Advisory).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."