Then you should be concerned. Because if you or anyone else at your company/org didn’t install this, someone did and that could mean someone is/was in the system that shouldn’t have been.
I upgraded from PBX Firmware:10.13.66-11 to 10.13.66-12
That removed the dag.repo and now I can install nodejs. This should make the pm2 upgrade happy.
I have fail2ban running. I don’t have any exposed ports except 5060 and data ports. I guess I will have to research how they got in.
@rhall - you seem to be missing the “oh my gawd why isn’t your hair on fire” point.
Getting a couple of modules upgraded is probably a priority, but making sure your system isn’t hacked and about to be used for thousands of (your local currency) in expenses because someone used your system to call out should be important.