Font Converter Project maintains a narrowly scoped font conversion utility, with a minimal and niche vulnerability footprint. Observed disclosures center on the font_converter product itself and reflect the general weakness categories associated with file-format handling; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Font Converter Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-21165CRITICAL All versions of package font-converter are vulnerable to Arbitrary Command Injection due to missing sanitization of input that potentially flows into the child_process.exec() funct | Aug 29, 2022 | 9.8 | 32 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Font Converter Project.
Media articles that mention a CVE ID that affects a product developed by Font Converter Project — matched by CVE ID, not by vendor name.