Known Vulnerabilities for Svg-sanitizer by Darylldoyle
Listed below are 10 of the newest known vulnerabilities associated with "Svg-sanitizer" by "Darylldoyle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-107380 json | savg-sanitizer is a PHP SVG/XML sanitizer. Prior to 1.0.0, svg-sanitizer's isHrefSafeValue() validates an SVG href after XML ... | Not Provided | 2026-10-08 | 2026-10-09 |
| CVE-2026-107379 json | savg-sanitizer is a PHP SVG/XML sanitizer. Prior to 1.0.0, svg-sanitizer allows a crafted SVG DTD with a #FIXED attribute def... | Not Provided | 2026-10-08 | 2026-10-09 |
| CVE-2026-106505 json | Backstage is an open framework for building developer portals. Prior to 1.14.6 and 1.15.4, the @backstage/plugin-techdocs-nod... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-105950 json | A security vulnerability has been detected in getformwork formwork up to 2.3.12. Impacted is the function DomSanitizer::sanit... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105796 json | Kiota is an OpenAPI based HTTP Client code generator. From 0.5.0 until 1.35.0, Kiota's Java and PHP documentation-comment san... | Not Provided | 2026-10-06 | 2026-10-09 |
| CVE-2026-104083 json | SmarterMail before build 9777 contains a stored mutation cross-site scripting vulnerability that allows remote attackers to i... | Not Provided | 2026-10-09 | 2026-10-09 |
| CVE-2026-104073 json | NetBox versions 2.9.5 before 4.7.0 contain a server-side template injection vulnerability that allows a low-privileged user w... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-103687 json | A vulnerability has been found in rhukster dom-sanitizer up to 1.0.15. The affected element is the function url of the file s... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103686 json | A flaw has been found in rhukster dom-sanitizer up to 1.0.15. Impacted is the function DOMSanitizer::isDangerousUrl of the fi... | Not Provided | 2026-10-01 | 2026-10-06 |
| CVE-2026-101884 json | OpenClaw Windows Node before 2026.7.1 contains an incomplete environment-variable sanitizer in system.run that fails to block... | Not Provided | 2026-09-30 | 2026-09-30 |