← Back

Wkhtmltopdf

wkhtmltopdf

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Wkhtmltopdf
wkhtmltopdf

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Wkhtmltopdf
1Wkhtmltopdf
Sep 2, 2025
Jan 9, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Vulnerability in Drupal wkhtmltopdf.This issue affects wkhtmltopdf: *.*.
1Wkhtmltopdf
1Wkhtmltopdf
Mar 18, 2025
Aug 22, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
wkhtmlTOpdf 0.12.6 is vulnerable to SSRF which allows an attacker to get initial access into the target's system by injecting iframe tag with initial asset IP address on it's source. This allows the attacker to takeover...Show more
wkhtmlTOpdf 0.12.6 is vulnerable to SSRF which allows an attacker to get initial access into the target's system by injecting iframe tag with initial asset IP address on it's source. This allows the attacker to takeover the whole infrastructure by accessing their internal assets.Show less
2Debian
Wkhtmltopdf
2Debian Linux
Wkhtmltopdf
Nov 21, 2024
Aug 15, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Directory traversal vulnerability in wkhtmltopdf through 0.12.5 allows remote attackers to read local files and disclose sensitive information via a crafted html file running with the default configurations.