A critical vulnerability in the popular expr-eval JavaScript library, with over 800,000 weekly downloads on NPM, can be ...
Researchers say the malware was in the repository for two weeks, advise precautions to defend against malicious packages.