Skip to main content

Vendor archive

courtbouillon CVEs

Beta · best-effort

3 CVEs tagged to vendor courtbouillon1 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2026-31899

Published Mar 13, 2026

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to Kozea/CairoSVG has exponential denial of service via recursive <use> element amplification in cairosvg…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2023-27586

Published Mar 20, 2023

CairoSVG is an SVG converter based on Cairo, a 2D graphics library. Prior to version 2.7.0, Cairo can send requests to external hosts when processing SVG files. A malicious actor…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-21236

Published Jan 6, 2021

CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnera…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1