Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using all malicious instances of the karaspace
package.
karaspace is a malicious package. It targets victims via dependency confusion. The package contains code that exfiltrates your IP address, environment variables, username, and other system fingerprinting information to a Pipedream address