CVE-2025-61979: High severity Canva Affinity vulnerability
An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a specially crafted EMF file, an attacker could exploit this vulnerability to perform an out-of-bounds read, potentially leading to the disclosure of sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-61979?
CVE-2025-61979 is classified as a medium severity vulnerability.
How do I fix CVE-2025-61979?
To fix CVE-2025-61979, users should update to the latest version of Canva Affinity that addresses this vulnerability.
What impact does CVE-2025-61979 have on Canva Affinity users?
CVE-2025-61979 can lead to an out-of-bounds read, potentially disclosing sensitive information to attackers.
Is CVE-2025-61979 an exploit that requires user interaction?
No, CVE-2025-61979 can be exploited by using a specially crafted EMF file without user interaction.
What versions of Canva Affinity are affected by CVE-2025-61979?
All current versions of Canva Affinity are affected by CVE-2025-61979 until the vulnerability is patched.