Description
All versions of the package wifey are vulnerable to Command Injection via the connect() function due to improper input sanitization.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-WIFEY-3175615
Related Vulnerabilities
CVE-2020-7729 Vulnerability in maven package org.webjars.npm:grunt
CVE-2021-27516 Vulnerability in maven package org.webjars.bower:urijs
CVE-2015-8857 Vulnerability in maven package org.webjars.npm:uglify-js
CVE-2020-8127 Vulnerability in maven package org.webjars:reveal.js
CVE-2020-17519 Vulnerability in maven package org.apache.flink:flink-runtime_2.11