Font Project's vulnerability footprint centers on font-rendering and font-file-handling software, with reported issues clustering around path-traversal weaknesses that can arise when processing untrusted font data or managing file paths during installation or extraction. Current exploitation activity, severity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Font Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-7683MEDIUM Absolute path traversal vulnerability in Font.php in the Font plugin before 7.5.1 for WordPress allows remote administrators to read arbitrary files via a full pathname in the url | Oct 16, 2015 | 4.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Font Project.
Media articles that mention a CVE ID that affects a product developed by Font Project — matched by CVE ID, not by vendor name.