Sploitus

CVE-2022-25759

No indexed exploits for CVE-2022-25759 yet

The package convert-svg-core before 0.6.2 are vulnerable to Remote Code Injection via sending an SVG file containing the payload.

Convert-svg-core Project Convert-svg-core
< 0.6.2
Fix
Available
CVSS 3.1
9.9 CRITICAL
EPSS
11.0% (95th percentile)
Weakness
CWE-94
NVD status
Modified
Published
2022-07-22
CVE-2022-25759 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2022-25759 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2022-25759 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.