Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade to version 1.3 or above
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 07 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 30 Mar 2026 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Inkscape
Inkscape inkscape |
|
| Vendors & Products |
Inkscape
Inkscape inkscape |
Mon, 30 Mar 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Fri, 27 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A local file disclosure vulnerability in the XInclude processing component of Inkscape 1.1 before 1.3 allows a remote attacker to read local files via a crafted SVG file containing malicious xi:include tags. | |
| Title | Improper Restriction of XML External Entity Reference in Inkscape | |
| Weaknesses | CWE-611 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2026-04-06T19:48:25.588Z
Reserved: 2026-03-27T11:18:24.287Z
Link: CVE-2026-4980
Updated: 2026-04-06T19:48:21.311Z
Status : Awaiting Analysis
Published: 2026-03-27T15:17:03.790
Modified: 2026-03-30T13:26:29.793
Link: CVE-2026-4980
OpenCVE Enrichment
Updated: 2026-03-30T07:01:39Z