Browse all 4 CVE security advisories affecting svg. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-84370 | SVGO: removeScripts allows executable links through namespace and control-character bypasses — svgo CWE-79 | 8.2 | High | 2026-09-01 |
| CVE-2026-84369 | SVGO: removeScripts incompletely sanitizes executable HTML in SVG foreignObject elements — svgo CWE-79 | 6.1 | Medium | 2026-09-01 |
| CVE-2026-73650 | SVGO: removeScripts plugin leaves some executable scripts intact — svgo CWE-79 | 8.2 | High | 2026-08-13 |
| CVE-2026-29074 | SVGO: DoS through entity expansion in DOCTYPE (Billion Laughs) — svgo CWE-776 | 7.5 | High | 2026-03-06 |
This page lists every published CVE security advisory associated with svg. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.