AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-38633

MEDIUM · CVSS 5.5 EPSS 2.38%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-07-22 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2023-38633
Severity
MEDIUM
CVSS
5.5
EPSS
2.38%

Original NVD Description

A directory traversal problem in the URL decoder of librsvg before 2.56.3 could be used by local or remote attackers to disclose files (on the local filesystem outside of the expected area), as demonstrated by href=".?../../../../../../../../../../etc/passwd" in an xi:include element.