CVE-2022-25926: window-control vulnerable to Command Injection due to improper input sanitization
(updated )
Versions of the package window-control before 1.4.5 is vulnerable to Command Injection via the sendKeys function, due to improper input sanitization.
References
Detect and mitigate CVE-2022-25926 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →