CVE-2024-25081
Splinefont in FontForge through 20230101 allows command injection via crafted filenames.
- Fontforge
- ≤ 20230101
- Fix
- Available
- CVSS 3.1
- 4.2 MEDIUM
- EPSS
- 1.1% (62th percentile)
- Weakness
- CWE-77
- NVD status
- Modified
- Published
- 2024-02-26
CVE-2024-25081 at NVD
3 known exploits for CVE-2024-25081
Proof-of-concept code and exploit modules indexed by Sploitus