Description
This affects all versions of package sonar-wrapper. The injection point is located in lib/sonarRunner.js.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-SONARWRAPPER-1050980
Related Vulnerabilities
CVE-2022-36045 Vulnerability in npm package nodebb
CVE-2022-45693 Vulnerability in maven package org.codehaus.jettison:jettison
CVE-2016-10735 Vulnerability in maven package ru.taskurotta:bootstrap
CVE-2018-1000548 Vulnerability in maven package com.umlet:umlet-swing
CVE-2010-1330 Vulnerability in maven package org.jruby:jruby