Type Confusion Vulnerability in Canva Affinity Software
CVE-2025-66342
7.8HIGH
What is CVE-2025-66342?
A type confusion vulnerability has been identified in the EMF functionality of Canva Affinity. This vulnerability can be exploited through specially crafted EMF files, potentially leading to memory corruption and allowing an attacker to execute arbitrary code on the affected system. Proper handling and validation of EMF files is crucial to mitigate the risks associated with this vulnerability.
Affected Version(s)
Affinity 3.0.1.3808
