Skip to content
Noroxi

dompdf records

4 published records for vendor dompdf.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

4 records
  • php-svg-lib unsafe attributes merge when parsing `use` tag

    CriticalCVSS 9.8No exploitEPSS 24%

    dompdf · php-svg-libDec 12, 2023

  • CVE-2014-2383
    39Monitor

    dompdf.php in dompdf before 0.6.1, when DOMPDF_ENABLE_PHP is enabled, allows context-dependent attackers to bypass chroot protections and re

    MediumCVSS 6.8Proof of conceptEPSS 39%

    dompdf · dompdfApr 28, 2014

  • php-svg-lib lacks path validation on font through SVG inline styles

    CriticalCVSS 9.8No exploitEPSS 1%

    php · phpFeb 21, 2024

  • php-svg-lib possible DoS caused by infinite recursion when parsing SVG document

    HighCVSS 7.5No exploitEPSS 1%

    dompdf · php-svg-libDec 12, 2023