VYPR

Convert Svg

by Convert Svg Project

CVEs (1)

  • CVE-2022-24278HigJun 10, 2022
    risk 0.42cvss 7.5epss 0.02

    The package convert-svg-core before 0.6.4 are vulnerable to Directory Traversal due to improper sanitization of SVG tags. Exploiting this vulnerability is possible by using a specially crafted SVG file.