Description
All versions of the package wifey are vulnerable to Command Injection via the connect() function due to improper input sanitization.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-WIFEY-3175615
Related Vulnerabilities
CVE-2020-15174 Vulnerability in npm package electron
CVE-2018-1002203 Vulnerability in npm package unzipper
CVE-2023-27162 Vulnerability in maven package org.openapitools:openapi-generator-project
CVE-2020-28438 Vulnerability in npm package deferred-exec
CVE-2023-33246 Vulnerability in maven package org.apache.rocketmq:rocketmq-namesrv