Description
This affects all versions of package npos-tesseract. The injection point is located in line 55 in lib/ocr.js.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-NPOSTESSERACT-1051031
Related Vulnerabilities
CVE-2022-21213 Vulnerability in npm package mout
CVE-2021-23337 Vulnerability in maven package org.webjars.bowergithub.lodash:lodash
CVE-2020-7639 Vulnerability in npm package eivindfjeldstad-dot
CVE-2020-9497 Vulnerability in maven package org.apache.guacamole:guacamole
CVE-2021-31635 Vulnerability in maven package com.jfinal:jfinal