Safety vulnerability ID: 38089
The information on this page was manually curated by our Cybersecurity Intelligence Team.
The svglib package through 0.9.3 for Python allows XXE attacks via an svg2rlg call. See: CVE-2020-10799.
Latest version: 1.5.1
A pure-Python library for reading and converting SVG
The svglib package through 0.9.3 for Python allows XXE attacks via an svg2rlg call.
MISC:https://github.com/deeplook/svglib/issues/229: https://github.com/deeplook/svglib/issues/229
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application