Количество 5
Количество 5
CVE-2026-31899
CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input.
CVE-2026-31899
A flaw was found in CairoSVG, an SVG converter. A remote attacker could exploit this vulnerability by submitting a specially crafted SVG file that contains recursive `<use>` elements. This can lead to an exponential increase in processing time and CPU exhaustion, resulting in a Denial of Service (DoS) for the system.
CVE-2026-31899
CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input.
CVE-2026-31899
CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Pr ...
GHSA-f38f-5xpm-9r7c
CairoSVG vulnerable to Exponential DoS via recursive <use> element amplification
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-31899 CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input. | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
CVE-2026-31899 A flaw was found in CairoSVG, an SVG converter. A remote attacker could exploit this vulnerability by submitting a specially crafted SVG file that contains recursive `<use>` elements. This can lead to an exponential increase in processing time and CPU exhaustion, resulting in a Denial of Service (DoS) for the system. | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
CVE-2026-31899 CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg/defs.py. This causes CPU exhaustion from a small input. | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
CVE-2026-31899 CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Pr ... | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
GHSA-f38f-5xpm-9r7c CairoSVG vulnerable to Exponential DoS via recursive <use> element amplification | CVSS3: 7.5 | 0% Низкий | 14 дней назад |
Уязвимостей на страницу