Security Advisory
CVE-2019-18854
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to unlimited recursion for a '<use ... xlink:href="#identifier">' substring.