CVE-2025-63317 | Todoist SVG File Parser /api/v1/uploads cross site scripting (EUVD-2025-200090)
A vulnerability was found in Todoist. It has been classified as problematic. The affected element is an unknown function of the file /api/v1/uploads of the component SVG File Parser. Performing manipulation results in cross site scripting.
This vulnerability was named CVE-2025-63317. The attack may be initiated remotely. There is no available exploit.