Back to Intel

Intel Node

Bitwarden CLI npm package compromised to steal developer credentials

lowadvisory2026-04-23T19:21:01+00:00source excerpt

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

The Bitwarden CLI was briefly compromised after attackers uploaded a malicious @bitwarden/cli package to npm containing a credential-stealing payload capable of spreading to other projects.

Read Original Source