Lucene search

K
osvGoogleOSV:GHSA-MPP5-2X55-49XW
HistoryJan 06, 2022 - 7:45 p.m.

XSS in svg2png (NPM package)

2022-01-0619:45:13
Google
osv.dev
13
xss
ssrf
svg2png
npm
javascript
svg
document

EPSS

0.001

Percentile

37.3%

svg2png 4.1.1 allows XSS with resultant SSRF via JavaScript inside an SVG document.

EPSS

0.001

Percentile

37.3%

Related for OSV:GHSA-MPP5-2X55-49XW