VendorsApachebatikall versions
Vulnerabilities

Apache Software Foundation Batik

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2018-8013
In Apache Batik 1.x before 1.10, when deserializing subclass of `AbstractDocument`, the class takes a string from the inputStream as the class name which then use it to call the no-arg constructor of the class. Fix was to check the class type before calling newInstance in deserialization.
Published 2018-05-24 · Modified
9.8EPSS 0.193
CVE-2020-11987
Apache Batik 1.13 is vulnerable to server-side request forgery, caused by improper input validation by the NodePickerPanel. By using a specially-crafted argument, an attacker could exploit this vulnerability to cause the underlying server to make arbitrary GET requests.
Published 2021-02-24 · Modified
8.2EPSS 0.133
CVE-2017-5662
In Apache Batik before 1.9, files lying on the filesystem of the server which uses batik can be revealed to arbitrary users who send maliciously formed SVG files. The file types that can be shown depend on the user context in which the exploitable application is running. If the user is root a full compromise of the server - including confidential or sensitive files - would be possible. XXE can also be used to attack the availability of the server via denial of service as the references within a xml document can trivially trigger an amplification attack.
Published 2017-04-18 · Modified
7.9EPSS 0.041
CVE-2019-17566
Apache Batik is vulnerable to server-side request forgery, caused by improper input validation by the "xlink:href" attributes. By using a specially-crafted argument, an attacker could exploit this vulnerability to cause the underlying server to make arbitrary GET requests.
Published 2020-11-12 · Modified
7.5EPSS 0.109
CVE-2022-40146
Jar url should be blocked by DefaultScriptSecurity
Published 2022-09-22 · Modified
7.5EPSS 0.074
CVE-2022-42890
Apache Batik prior to 1.16 allows RCE via scripting
Published 2022-10-25 · Modified
7.5EPSS 0.026
CVE-2022-41704
Apache Batik prior to 1.16 allows RCE when loading untrusted SVG input
Published 2022-10-25 · Modified
7.5EPSS 0.024
CVE-2015-0250
XML external entity (XXE) vulnerability in the SVG to (1) PNG and (2) JPG conversion classes in Apache Batik 1.x before 1.8 allows remote attackers to read arbitrary files or cause a denial of service via a crafted SVG file.
Published 2015-03-24 · Modified
6.4EPSS 0.166
CVE-2022-38398
Server-Side Request Forgery Information Disclosure Vulnerability
Published 2022-09-22 · Modified
5.3EPSS 0.026
CVE-2022-38648
PDFTranscoder does not block external resources
Published 2022-09-22 · Modified
5.3EPSS 0.024
CVE-2005-0508
Unknown vulnerability in Squiggle for Batik before 1.5.1 allows attackers to bypass certain access controls via certain features of the Rhino scripting engine due to a "script security issue."
Published 2005-02-22 · Modified
4.6EPSS 0.004