CVE-2026-24807
Unknown
Unknown - Not Provided
Improper Cryptographic Signature Verification in quick-media Before v
Publication date: 2026-01-27
Last updated on: 2026-05-06
Assigner: Government Technology Agency of Singapore Cyber Security Group (GovTech CSG)
Description
Description
Improper Verification of Cryptographic Signature vulnerability in liuyueyi quick-media (plugins/svg-plugin/batik-codec-fix/src/main/java/org/apache/batik/ext/awt/image/codec/util modules). This vulnerability is associated with program files SeekableOutputStream.Java.
This issue affects quick-media: before v1.0.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| liuyueyi | quick-media | to 1.0 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-347 | The product does not verify, or incorrectly verifies, the cryptographic signature for data. |