CVE

Id
102437  
CVE No.
CVE-2017-5617  
Status
Candidate  
Description
The SVG Salamander (aka svgSalamander) library, when used in a web application, allows remote attackers to conduct server-side request forgery (SSRF) attacks via an xlink:href attribute in an SVG file.  
Phase
Assigned (20170129)  
Votes
None (candidate not yet proposed)  
Comments