Loading
A vulnerability in Batik of Apache XML Graphics allows an attacker to run Java code from untrusted SVG via JavaScript. This issue affects Apache XML Graphics prior to 1.16. Users are recommended to upgrade to version 1.16.
Use CWE-918, Apache vendor hub and Batik product page to widen CVE-2022-42890 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-8013, CVE-2020-11987 and CVE-2022-41704 for nearby disclosures in the same product family.