← Back

Convert Svg

convert-svg

Vendor: Convert Svg Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Convert Svg Project
1Convert Svg
Jun 17, 2026
Jun 10, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
The package convert-svg-core before 0.6.4 are vulnerable to Directory Traversal due to improper sanitization of SVG tags. Exploiting this vulnerability is possible by using a specially crafted SVG file.