Lucene search

K
osvGoogleOSV:CVE-2024-25082
HistoryFeb 26, 2024 - 4:27 p.m.

CVE-2024-25082

2024-02-2616:27:58
Google
osv.dev
4
splinefont
fontforge
command injection
vulnerability
software

7.7 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.5%

Splinefont in FontForge through 20230101 allows command injection via crafted archives or compressed files.