VYPR

Metadata Extractor

by Metadata Extractor Project

CVEs (1)

  • CVE-2022-24613MedFeb 24, 2022
    risk 0.36cvss 5.5epss 0.01

    metadata-extractor up to 2.16.0 can throw various uncaught exceptions while parsing a specially crafted JPEG file, which could result in an application crash. This could be used to mount a denial of service attack against services that use metadata-extractor library.