Description
Improper Control of Generation of Code ('Code Injection') vulnerability in liuyueyi quick-media (plugins/svg-plugin/batik-codec-fix/src/main/java/org/apache/batik/ext/awt/image/codec/png modules). This vulnerability is associated with program files PNGImageEncoder.Java. This issue affects quick-media: before v1.0.
Problem types
CWE-94 Improper Control of Generation of Code ('Code Injection')
Product status
Any version before v1.0
Credits
TITAN Team (titancaproject@gmail.com)
References
github.com/liuyueyi/quick-media/pull/122
github.com/css4j/echosvg/discussions/137
github.com/github/advisory-database/pull/7437
github.com/liuyueyi/quick-media/pull/122