Filtered by vendor Convert-svg Project Subscriptions
Filtered by product Convert-svg Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-24278 1 Convert-svg Project 1 Convert-svg 2024-09-16 7.5 High
The package convert-svg-core before 0.6.4 are vulnerable to Directory Traversal due to improper sanitization of SVG tags. Exploiting this vulnerability is possible by using a specially crafted SVG file.