Description
This affects all versions of package sonar-wrapper. The injection point is located in lib/sonarRunner.js.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-SONARWRAPPER-1050980
Related Vulnerabilities
CVE-2022-35204 Vulnerability in npm package vite
CVE-2021-34084 Vulnerability in npm package s3-uploader
CVE-2021-23379 Vulnerability in npm package portkiller
CVE-2020-36180 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2020-15119 Vulnerability in maven package org.webjars.bower:auth0-lock