Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using version 0.1.8
of kraken-api
altogether.
kraken-api is a NodeJS Client Library for the Kraken (kraken.com) API
The package contains malicious code as a preinstall script. When installed, the package calls home to a Command and Control server to execute arbitrary commands.