Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using rrgod
altogether.
rrgod is a Malicious Package.
This package downloads and executes a python script from http://static.ricterz.me via preinstall, postinstall and install scripts. That script is trying to fetch and execute another script from ricterz.me:8889 which is currently down. The python script from http://static.ricterz.me is saved in shell.py
.