Show filters
596 Total Results
Displaying 11-20 of 596
Sort by:
Attacker Value
Unknown

CVE-2021-41785

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Attacker Value
Unknown

CVE-2021-41784

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Attacker Value
Unknown

CVE-2021-41783

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Attacker Value
Unknown

CVE-2021-41782

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Attacker Value
Unknown

CVE-2021-41781

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Attacker Value
Unknown

CVE-2021-41780

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Attacker Value
Unknown

CVE-2021-40326

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, mishandle hidden and incremental data in signed documents. An attacker can write to an arbitrary file, and display controlled contents, during signature verification.
Attacker Value
Unknown

CVE-2022-2400

Disclosure Date: July 18, 2022 (last updated October 07, 2023)
External Control of File Name or Path in GitHub repository dompdf/dompdf prior to 2.0.0.
Attacker Value
Unknown

CVE-2022-0085

Disclosure Date: June 28, 2022 (last updated October 07, 2023)
Server-Side Request Forgery (SSRF) in GitHub repository dompdf/dompdf prior to 2.0.0.
Attacker Value
Unknown

CVE-2022-28368

Disclosure Date: April 03, 2022 (last updated October 07, 2023)
Dompdf 1.2.1 allows remote code execution via a .php file in the src:url field of an @font-face Cascading Style Sheets (CSS) statement (within an HTML input file).