CVE-2022-44730
22.08.2023, 19:16
Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affects Apache XML Graphics Batik: 1.16. A malicious SVG can probe user profile / data and send it directly as parameter to a URL.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apache | xml_graphics_batik | 1.0 ≤ 𝑥 ≤ 1.16 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||
|---|---|---|---|---|---|---|---|
| xmlgraphics-batik |
| ||||||
| xmlgraphics-batik-css |
|
Amazon Linux Releases
Amazon Package | |||
|---|---|---|---|
| batik |
| ||
| batik-demo |
| ||
| batik-javadoc |
| ||
| batik-rasterizer |
| ||
| batik-slideshow |
| ||
| batik-squiggle |
| ||
| batik-svgpp |
| ||
| batik-ttf2svg |
|
References