Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade command-exists
to version 1.2.4 or higher.
command-exists is a node module to check if a command-line command exists.
Affected versions of this package are vulnerable to Arbitrary Command Injection. An attacker may inject and execute arbitrary shell commands while trying to determine if a crafted command exists.