Description
This affects all versions of package npos-tesseract. The injection point is located in line 55 in lib/ocr.js.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-NPOSTESSERACT-1051031
Related Vulnerabilities
CVE-2023-26480 Vulnerability in maven package org.xwiki.platform:xwiki-platform-livedata-webjar
CVE-2020-8203 Vulnerability in maven package org.webjars.bowergithub.lodash:lodash
CVE-2018-1306 Vulnerability in maven package org.apache.portals.pluto:portletv3annotateddemo
CVE-2021-40660 Vulnerability in maven package org.javadelight:delight-nashorn-sandbox
CVE-2020-17527 Vulnerability in maven package org.apache.tomcat:tomcat-coyote