Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using all malicious instances of the jquerry
package.
jquerry is a malicious package.
All versions of jquerry
contain malicious code. The index.js
file appears to download and execute a crypto mining script. The file is not run upon installation - the package needs to be required or the index.js
run manually.