CVE-2025-58427: High severity Canva Affinity vulnerability
An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a specially crafted EMF file, an attacker could exploit this vulnerability to perform an out-of-bounds read, potentially leading to the disclosure of sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58427?
CVE-2025-58427 is classified as a medium severity vulnerability due to its potential to disclose sensitive information.
How do I fix CVE-2025-58427?
To mitigate CVE-2025-58427, users should update to the latest version of Canva Affinity that includes security patches.
What types of attacks can CVE-2025-58427 enable?
CVE-2025-58427 can enable attackers to perform out-of-bounds reads, potentially leading to the exposure of sensitive information.
Which software is affected by CVE-2025-58427?
CVE-2025-58427 affects Canva Affinity and its EMF functionality specifically.
Is there a workaround for CVE-2025-58427 if I cannot update immediately?
Currently, there are no documented workarounds for CVE-2025-58427, so updating to the latest version is recommended.