Description
svg-sanitizer is a SVG/XML sanitizer written in PHP. A cross-site scripting vulnerability impacts all users of the `svg-sanitizer` library prior to version 0.15.0. This issue is fixed in version 0.15.0. There is currently no workaround available.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0990 | svg-sanitizer is a SVG/XML sanitizer written in PHP. A cross-site scripting vulnerability impacts all users of the `svg-sanitizer` library prior to version 0.15.0. This issue is fixed in version 0.15.0. There is currently no workaround available. |
Github GHSA |
GHSA-fqx8-v33p-4qcc | Cross-site Scripting in enshrined/svg-sanitize |
Ubuntu USN |
USN-7318-1 | SPIP vulnerabilities |
References
History
Thu, 24 Apr 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-23T19:05:21.988Z
Reserved: 2022-01-19T00:00:00.000Z
Link: CVE-2022-23638
Updated: 2024-08-03T03:51:45.661Z
Status : Modified
Published: 2022-02-14T21:15:09.853
Modified: 2024-11-21T06:48:59.550
Link: CVE-2022-23638
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA
Ubuntu USN