An issue in canvg v.4.0.2 allows an attacker to execute arbitrary code via the Constructor of the class StyleElement.
Metrics
Affected Vendors & Products
References
History
Wed, 12 Mar 2025 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | canvg: Prototype Pollution Vulneralbility | |
Weaknesses | CWE-1321 | |
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Mon, 10 Mar 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue in canvg v.4.0.2 allows an attacker to execute arbitrary code via the Constructor of the class StyleElement. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-03-10T00:00:00.000Z
Updated: 2025-03-10T15:56:25.222Z
Reserved: 2025-02-07T00:00:00.000Z
Link: CVE-2025-25977

No data.

Status : Received
Published: 2025-03-10T16:15:13.633
Modified: 2025-03-10T16:15:13.633
Link: CVE-2025-25977
