WkhtmltopdfCVEs & Vulnerabilities
3 CVEs affecting Wkhtmltopdf products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
wkhtmltopdf 3
CVE-2024-13285CRITICAL
Vulnerability in Drupal wkhtmltopdf.This issue affects wkhtmltopdf: *.*.
9 Jan 2025
9.8
CVSS
CVE-2022-35583CRITICALpoc
wkhtmlTOpdf 0.12.6 is vulnerable to SSRF which allows an attacker to get initial access into the target's system by injecting iframe tag with initial asset IP address on it's source. This allows the attacker to takeover the whole infrastructure by accessing their internal assets.
22 Aug 2022
9.8
CVSS
CVE-2020-21365HIGH
Directory traversal vulnerability in wkhtmltopdf through 0.12.5 allows remote attackers to read local files and disclose sensitive information via a crafted html file running with the default configurations.
15 Aug 2022
7.5
CVSS
← PrevPage 1 / 1Next →