CVE-2020-28443: sonar-wrapper Command Injection vulnerability

Severity: Critical

CVSS Score: 9.8

This affects all versions of package sonar-wrapper. The injection point is located in lib/sonarRunner.js.