High
CVE-2022-25926
Node.js window-control module could allow a local attacker to execute arbitrary commands on the system, caused by improper input validation by the sendKeys function. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
Node.js
Upgrade to the latest version of window-control, available from the window-control GIT Repository.