CVE-2026-84370 | SVGO up to 2.8.3/3.3.4/4.0.x removeScripts plugins/removeScripts.js cross site scripting

SecurityVulns

A vulnerability classified as problematic was found in SVGO up to 2.8.3/3.3.4/4.0.x. The impacted element is an unknown function of the file plugins/removeScripts.js of the component removeScripts. The manipulation results in cross site scripting.

This vulnerability is identified as CVE-2026-84370. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More