Description
smb was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/518
Related Vulnerabilities
CVE-2022-28820 Vulnerability in maven package com.adobe.acs:acs-aem-commons
CVE-2022-23496 Vulnerability in maven package nl.basjes.parse.useragent:yauaa-parent
CVE-2020-17530 Vulnerability in maven package org.apache.struts:struts2-core
CVE-2014-6393 Vulnerability in npm package express
CVE-2022-2191 Vulnerability in maven package org.eclipse.jetty:jetty-server