VYPR

Convertigo

by Convertigo

Source repositories

CVEs (1)

  • CVE-2025-43955LowApr 20, 2025
    risk 0.07cvss 2.2epss 0.00

    TwsCachedXPathAPI in Convertigo versions before 8.3.11 did not restrict commons-jxpath functions, which could allow expression injection in contexts where an attacker can influence an evaluated XPath expression. Convertigo 8.3.11 fixes the issue by assigning an empty…