@wireframe-tool/pointivo-app-host
v1.0.3
Published
Dependency Confusion to RCE By Steiner254
Readme
@wireframe-tool/pointivo-app-host
Internal package for the Pointivo App Host - Vulnerable To Dependency Confusion Resulting To RCE.
⚠️ This package name is a prove of an RCE by @Steiner254.
Installation
npm install @wireframe-tool/pointivo-app-host
## Security Proof of Concept
This package contains a **non-malicious proof of remote code execution (RCE)**.
When installed or imported, it:
- Executes JavaScript code
- Writes a harmless file to `/tmp`
- Produces console output confirming execution
