It was reported that cairosvg, a SVG converter based on Cairo, can send requests to external hosts when processing specially crafted SVG files
with external file resource loading. An attacker can take advantage of
this flaw to perform a server-side request forgery or denial of service. Fetching of external files is disabled by default with this update.
For the stable distribution (bullseye), this problem has been fixed in
We recommend that you upgrade your cairosvg packages.