Description
smb was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Remediation
References
https://nodesecurity.io/advisories/518
Related Vulnerabilities
CVE-2020-26259 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2018-25031 Vulnerability in maven package org.webjars.npm:swagger-ui-dist
CVE-2019-14517 Vulnerability in maven package org.webjars.bowergithub.pandao:editor.md
CVE-2018-3258 Vulnerability in maven package mysql:mysql-connector-java
CVE-2021-37306 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base