PatchSiren

fnando CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM fnando CVE published 2026-09-14

CVE-2023-46035

The svg_optimizer gem before 0.3.0 for Ruby performs entity expansion on untrusted documents, which could potentially lead to security issues related to denial of service or arbitrary code execution. This CVE was published on 2026-09-14T06:16:54.500Z and was last modified on 2026-09-22T20:00:03.713Z. Defenders should assess exposure and prioritize verification and potential updates. The vulnerability is r [truncated]