📦 Affinity

by Canva

🔍 What is Affinity?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-66342

HIGH CVSS 7.8 Mar 17, 2026

A type confusion vulnerability in Canva Affinity's EMF file processing allows memory corruption when opening malicious EMF files. This can lead to arbitrary code execution with the privileges of the u...

CVE-2025-64301

HIGH CVSS 7.8 Mar 17, 2026

An out-of-bounds write vulnerability in Canva Affinity's EMF file processing allows attackers to execute arbitrary code by tricking users into opening malicious EMF files. This affects all users of vu...

CVE-2025-66617

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to disclosure of s...

CVE-2026-20726

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to sensitive infor...

CVE-2025-65119

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to sensitive infor...

CVE-2025-66042

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to sensitive infor...

CVE-2025-62403

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to sensitive infor...

CVE-2025-64735

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to sensitive infor...

CVE-2025-47873

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to sensitive infor...

CVE-2025-61952

MEDIUM CVSS 6.1 Mar 17, 2026

An out-of-bounds read vulnerability in Canva Affinity's EMF file processing allows attackers to read memory beyond allocated buffers via specially crafted EMF files. This could lead to sensitive infor...