CVE-2025-62403: High severity Canva Affinity vulnerability
An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a specially crafted EMF file, an attacker could exploit this vulnerability to perform an out-of-bounds read, potentially leading to the disclosure of sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62403?
CVE-2025-62403 has been classified as a medium severity vulnerability due to its potential to disclose sensitive information.
How do I fix CVE-2025-62403?
To mitigate CVE-2025-62403, users should update Canva Affinity to the latest version that addresses this vulnerability.
What type of vulnerability is CVE-2025-62403?
CVE-2025-62403 is an out-of-bounds read vulnerability that can be exploited through specially crafted EMF files.
Which software is affected by CVE-2025-62403?
CVE-2025-62403 affects Canva Affinity on Windows platforms up to version 3.1.0.
What could be the impact of exploiting CVE-2025-62403?
Exploiting CVE-2025-62403 could lead to the disclosure of sensitive information from the affected system.