VYPR

Svg Salamander

by Kitfox

CVEs (1)

  • CVE-2017-5617HigMar 16, 2017
    risk 0.48cvss 7.4epss 0.01

    The SVG Salamander (aka svgSalamander) library, when used in a web application, allows remote attackers to conduct server-side request forgery (SSRF) attacks via an xlink:href attribute in an SVG file.