Description
This affects all versions of package sonar-wrapper. The injection point is located in lib/sonarRunner.js.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-SONARWRAPPER-1050980
Related Vulnerabilities
CVE-2023-26156 Vulnerability in maven package org.webjars.npm:chromedriver
CVE-2021-46708 Vulnerability in maven package org.webjars:swagger-ui
CVE-2021-41269 Vulnerability in maven package com.cronutils:cron-utils
CVE-2022-0654 Vulnerability in npm package requestretry
CVE-2023-37956 Vulnerability in maven package org.jenkins-ci.plugins:test-results-aggregator