VDB

DEBIAN-CVE-2022-44729

DEBIAN-CVE-2022-44729 PUBLISHED CVSS 7.099999904632568 HIGH

Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affects Apache XML Graphics Batik: 1.16. On version 1.16, a malicious SVG could trigger loading external resources by default, causing resource consumption or in some cases even information disclosure. Users are recommended to upgrade to version 1.17 or later.

Risk Scores

CVSS v3.1
7.099999904632568
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H

Affected Products

VendorProductVersions
Debian:13batik0, 0, 0
Debian:11batik1.12-4, 1.12-4+deb11u1, 0
Debian:14batik0, 0, 0
Debian:12batik0, 1.16+dfsg-1, 0

Timeline

  • Aug 22, 2023 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›