Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using all malicious instances of the random-vouchercode-generator
package.
random-vouchercode-generator is a malicious package.
This package queries a remote Heroku server for a command and then runs the arbitrary command it receives. It also performs the expected functions of the voucher-code-generator
package.