Vulnerabilities (CVE)

Filtered by vendor Html2pdf Project Subscribe
Filtered by product Html2pdf
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-39062 1 Html2pdf Project 1 Html2pdf 2024-11-21 N/A 6.1 MEDIUM
Cross Site Scripting vulnerability in Spipu HTML2PDF before v.5.2.8 allows a remote attacker to execute arbitrary code via a crafted script to the forms.php.
CVE-2021-45394 1 Html2pdf Project 1 Html2pdf 2024-11-21 6.8 MEDIUM 8.8 HIGH
An issue was discovered in Spipu HTML2PDF before 5.2.4. Attackers can trigger deserialization of arbitrary data via the injection of a malicious <link> tag in the converted HTML document.