CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.
CVE
CVE-2020-28447
Severity
CRITICAL
CVSS
9.8
EPSS
1.23%
Original NVD Description
This affects all versions of package xopen. The injection point is located in line 14 in index.js in the exported function xopen(filepath)