Supply-chain threat intelligence
Risk score
92
Indexed incident for @nx/js (npm).
-= Per source details. Do not edit below this line.=-
The nx project and associated plugins were compromised via a vulnerable
GitHub workflow that allowed code injection and the theft of an NPM token.
Affected versions
Indicators
Timeline