CVE-2020-28435: ffmpeg-sdk vulnerable to OS Command Injection

Severity: Critical

CVSS Score: 9.8

This affects all versions of package ffmpeg-sdk. The injection point is located in line 9 in index.js.