rootpwn

unknown

CVE-2026-94545

The Node.js ImageResponse implementation from next/og is affected by an upstream vulnerability. Under specific condition…

Description

The Node.js ImageResponse implementation from next/og is affected by an upstream vulnerability. Under specific conditions, improper escaping in SVG output generated by Satori could lead to remote code execution due to vulnerabilities in other upstream dependencies.

Scores

Severity
unknown
CVSS v2
CVSS v3
CVSS v4
EPSS

← All CVEs