VDB
DEBIAN-CVE-2022-44729
DEBIAN-CVE-2022-44729
PUBLISHED
CVSS 7.099999904632568 HIGH
Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affects Apache XML Graphics Batik: 1.16. On version 1.16, a malicious SVG could trigger loading external resources by default, causing resource consumption or in some cases even information disclosure. Users are recommended to upgrade to version 1.17 or later.
Risk Scores
CVSS v3.1
7.099999904632568
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:13 | batik | 0, 0, 0 |
| Debian:11 | batik | 1.12-4, 1.12-4+deb11u1, 0 |
| Debian:14 | batik | 0, 0, 0 |
| Debian:12 | batik | 0, 1.16+dfsg-1, 0 |
Timeline
- Aug 22, 2023 CVE Published
- Apr 28, 2026 CVE Updated