svgin_process of the file src/filters/load_svg.c of the component SVG Parser. The manipulation leads to out-of-bounds write.This vulnerability is uniquely identified as CVE-2026-4016. Local access is required to approach this attack. Moreover, an exploit is present.
It is suggested to install a patch to address this issue.
SOCIAL SHARE CARD GENERATOR