First published: Mon Jul 25 2022(Updated: )
This affects all versions of package ffmpeg-sdk. The injection point is located in line 9 in index.js.
Credit: report@snyk.io
Affected Software | Affected Version | How to fix |
---|---|---|
FFmpeg |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-28435 is classified as a high severity vulnerability due to the potential for code injection.
To fix CVE-2020-28435, update ffmpeg-sdk to a version that is not affected by this vulnerability.
CVE-2020-28435 affects all versions of the ffmpeg-sdk package.
CVE-2020-28435 is a code injection vulnerability that can allow an attacker to execute arbitrary code.
The injection point for CVE-2020-28435 is located in line 9 of the index.js file.