CVE-2026-44311 | fabricjs fabric.js up to 7.3.x toSVG Color cross site scripting (GHSA-w22m-hvvm-xmwx)

SecurityVulns

A vulnerability described as problematic has been identified in fabricjs fabric.js up to 7.3.x. This impacts the function toSVG. Executing a manipulation of the argument Color can lead to cross site scripting.

This vulnerability is tracked as CVE-2026-44311. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More