CVE-2020-7623

EUVD-2022-0955
jscover through 1.0.0 is vulnerable to Command Injection. It allows execution of arbitrary command via the source argument.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H