CVE-2019-18855: High severity safe svg vulnerability
Published Nov 11, 2019
·Updated
A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to potentially unwanted elements or attributes.
Affected Software
2 affected components
10up Safe Svg Wordpress<=1.9.4
Safe Svg Project Safe Svg Wordpress<=1.9.4
Event History
Nov 11, 2019
CVE Published
via MITRE·02:35 PM
Data Sourced
via MITRE·02:35 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-18855?
CVE-2019-18855 is categorized as a Denial of Service vulnerability.
2
How do I fix CVE-2019-18855?
To mitigate CVE-2019-18855, update the Safe SVG plugin to version 1.9.5 or later.
3
What versions of Safe SVG are affected by CVE-2019-18855?
CVE-2019-18855 affects versions of Safe SVG through 1.9.4.
4
What impact does CVE-2019-18855 have on WordPress sites?
CVE-2019-18855 can lead to Denial of Service, potentially impacting the availability of WordPress sites.
5
Is CVE-2019-18855 related to specific elements or attributes?
Yes, CVE-2019-18855 is related to potentially unwanted elements or attributes within the Safe SVG plugin.