Логотип exploitDog
bind:CVE-2026-31899
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-31899

Количество 5

Количество 5

ubuntu логотип

CVE-2026-31899

14 дней назад

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-31899

14 дней назад

A flaw was found in CairoSVG, an SVG converter. A remote attacker could exploit this vulnerability by submitting a specially crafted SVG file that contains recursive `<use>` elements. This can lead to an exponential increase in processing time and CPU exhaustion, resulting in a Denial of Service (DoS) for the system.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-31899

14 дней назад

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-31899

14 дней назад

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Pr ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-f38f-5xpm-9r7c

14 дней назад

CairoSVG vulnerable to Exponential DoS via recursive <use> element amplification

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-31899

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input.

CVSS3: 7.5
0%
Низкий
14 дней назад
redhat логотип
CVE-2026-31899

A flaw was found in CairoSVG, an SVG converter. A remote attacker could exploit this vulnerability by submitting a specially crafted SVG file that contains recursive `<use>` elements. This can lead to an exponential increase in processing time and CPU exhaustion, resulting in a Denial of Service (DoS) for the system.

CVSS3: 7.5
0%
Низкий
14 дней назад
nvd логотип
CVE-2026-31899

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input.

CVSS3: 7.5
0%
Низкий
14 дней назад
debian логотип
CVE-2026-31899

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Pr ...

CVSS3: 7.5
0%
Низкий
14 дней назад
github логотип
GHSA-f38f-5xpm-9r7c

CairoSVG vulnerable to Exponential DoS via recursive <use> element amplification

CVSS3: 7.5
0%
Низкий
14 дней назад

Уязвимостей на страницу