Skip to main content

Vendor/product archive

dompdf / php-svg-lib CVEs

Beta · best-effort

3 CVEs tagged to dompdf / php-svg-lib0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2024-25117

Published Feb 21, 2024

php-svg-lib is a scalable vector graphics (SVG) file parsing/rendering library. Prior to version 0.5.2, php-svg-lib fails to validate that font-family doesn't contain a PHAR url,…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-50252

Published Dec 12, 2023

php-svg-lib is an SVG file parsing / rendering library. Prior to version 0.5.1, when handling `<use>` tag that references an `<image>` tag, it merges the attributes from the `<use…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2023-50251

Published Dec 12, 2023

php-svg-lib is an SVG file parsing / rendering library. Prior to version 0.5.1, when parsing the attributes passed to a `use` tag inside an svg document, an attacker can cause the…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1