Server side template injection In fontforge

Description

Splinefont in FontForge through 20230101 allows command injection via crafted filenames.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions