CRITICAL9.8npm
GHSA-8j44-735h-w4w2· CVE-2026-26832node-tesseract-ocr is vulnerable to OS Command Injection through unsanitized recognize() function parameter
Modified: 3/27/2026
package
pkg:npm/node-tesseract-ocr
node-tesseract-ocr is vulnerable to OS Command Injection through unsanitized recognize() function parameter
Modified: 3/27/2026