CVE-2025-54313 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

eslint-config-prettier 8.10.1, 9.1.1, 10.1.6, and 10.1.7 has embedded malicious code for a supply chain compromise. Installing an affected package executes an i…
High KEV CVSS: 7.5

CVE-2025-54313

eslint-config-prettier 8.10.1, 9.1.1, 10.1.6, and 10.1.7 has embedded malicious code for a supply chain compromise. Installing an affected package executes an install.js file that launches the node-gyp.dll malware on Windows.
Vendor
Prettier
Product
Eslint-config-prettier
CWE
CWE-506
Yayın Tarihi
2025-07-19 17:15:23
Güncelleme
2026-01-23 18:33:09
Source Identifier
cve@mitre.org
KEV Date Added
2026-01-22

Kategoriler

Referanslar