svg-sanitizer is a SVG/XML sanitizer written in PHP. A cross-site scripting vulnerability impacts all users of the `svg-sanitizer` library prior to version 0.15.0. This issue is fixed in version 0.15.0. There is currently no workaround available.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| enshrined/svg-sanitize(Packagist) | 0 | 0.15.0 | N/A |
CVSS Metrics