9.8
CVSSv3

CVE-2022-25759

Published: 22/07/2022 Updated: 25/07/2022
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The package convert-svg-core prior to 0.6.2 are vulnerable to Remote Code Injection via sending an SVG file containing the payload.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

convert-svg-core project convert-svg-core