Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-4980

Опубликовано: 27 мар. 2026
Источник: nvd
CVSS3: 6.3
EPSS Низкий

Описание

A local file disclosure vulnerability in the XInclude processing component of Inkscape 1.1 before 1.3 allows a remote attacker to read local files via a crafted SVG file containing malicious xi:include tags.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:inkscape:inkscape:*:*:*:*:*:*:*:*
Версия от 1.1 (включая) до 1.3 (исключая)

EPSS

Процентиль: 10%
0.00202
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 6.3
ubuntu
4 месяца назад

A local file disclosure vulnerability in the XInclude processing component of Inkscape 1.1 before 1.3 allows a remote attacker to read local files via a crafted SVG file containing malicious xi:include tags.

CVSS3: 6.3
redhat
4 месяца назад

A local file disclosure vulnerability in the XInclude processing component of Inkscape 1.1 before 1.3 allows a remote attacker to read local files via a crafted SVG file containing malicious xi:include tags.

CVSS3: 6.3
debian
4 месяца назад

A local file disclosure vulnerability in the XInclude processing compo ...

CVSS3: 6.3
github
4 месяца назад

A local file disclosure vulnerability in the XInclude processing component of Inkscape 1.1 before 1.3 allows a remote attacker to read local files via a crafted SVG file containing malicious xi:include tags.

EPSS

Процентиль: 10%
0.00202
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-611
Уязвимость CVE-2026-4980