Search CVE reports


Toggle filters

1 – 2 of 2 results


CVE-2022-35583

Medium priority
Vulnerable

wkhtmlTOpdf 0.12.6 is vulnerable to SSRF which allows an attacker to get initial access into the target's system by injecting iframe tag with initial asset IP address on it's source. This allows the attacker to takeover the whole...

1 affected package

wkhtmltopdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
wkhtmltopdf Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2020-21365

Medium priority
Fixed

Directory traversal vulnerability in wkhtmltopdf through 0.12.5 allows remote attackers to read local files and disclose sensitive information via a crafted html file running with the default configurations.

1 affected package

wkhtmltopdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
wkhtmltopdf Not affected Fixed Fixed Fixed
Show less packages