Vulnerabilities (CVE)

Filtered by vendor Html2pdf Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-39062 1 Html2pdf Project 1 Html2pdf 2023-12-10 N/A 6.1 MEDIUM
Cross Site Scripting vulnerability in Spipu HTML2PDF before v.5.2.8 allows a remote attacker to execute arbitrary code via a crafted script to the forms.php.
CVE-2021-45394 1 Html2pdf Project 1 Html2pdf 2023-12-10 6.8 MEDIUM 8.8 HIGH
An issue was discovered in Spipu HTML2PDF before 5.2.4. Attackers can trigger deserialization of arbitrary data via the injection of a malicious <link> tag in the converted HTML document.