Security Advisory
CVE-2019-18854
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to unlimited recursion for a <use ... xlink:href="#identifier"> substring.