Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using all malicious instances of the gxm-reference-web-auth-server
package.
gxm-reference-web-auth-server is a malicious package. It is a 2-step malware that hides itself, decoys, and deploys a trojan agent on victims' machines.
See the full blogpost and synopsis for more information: https://snyk.io/blog/npm-dependency-confusion-attack-gxm-reference/
Related packages: