CVE-2025-64301

An out‑of‑bounds write vulnerability exists in the EMF functionality of Canva Affinity. By using a specially crafted EMF file, an attacker could exploit this vulnerability to perform an out‑of‑bounds write, potentially leading to code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:canva:affinity:*:*:*:*:*:windows:*:*

History

No history.

Information

Published : 2026-03-17 19:15

Updated : 2026-03-19 12:24


NVD link : CVE-2025-64301

Mitre link : CVE-2025-64301

CVE.ORG link : CVE-2025-64301


JSON object : View

Products Affected

canva

  • affinity
CWE
CWE-787

Out-of-bounds Write