Vulnerabilities > Foxitsoftware > Phantompdf > 8.3.12.47136

DATE CVE VULNERABILITY TITLE RISK
2020-09-04 CVE-2020-12247 Out-of-bounds Read vulnerability in Foxitsoftware Phantompdf
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information from an out-of-bounds read because a text-string index continues to be used after splitting a string into two parts.
5.8
2020-09-04 CVE-2020-11493 Insufficient Verification of Data Authenticity vulnerability in Foxitsoftware Phantompdf
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information about an uninitialized object because of direct transformation from PDF Object to Stream without concern for a crafted XObject.
5.8
2020-08-20 CVE-2020-15638 Type Confusion vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.2.29539.
6.8
2020-08-20 CVE-2020-15637 Use After Free vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 9.7.1.29511.
4.3
2020-06-04 CVE-2020-13815 Resource Exhaustion vulnerability in Foxitsoftware Phantompdf
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1.
network
low complexity
foxitsoftware CWE-400
5.0
2020-06-04 CVE-2020-13814 Use After Free vulnerability in Foxitsoftware Phantompdf
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1.
network
low complexity
foxitsoftware CWE-416
7.5
2020-06-04 CVE-2019-20820 NULL Pointer Dereference vulnerability in Foxitsoftware Phantompdf
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.
network
low complexity
foxitsoftware CWE-476
5.0
2020-06-04 CVE-2019-20819 Resource Exhaustion vulnerability in Foxitsoftware Phantompdf
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.
network
low complexity
foxitsoftware CWE-400
5.0
2020-06-04 CVE-2019-20818 Resource Exhaustion vulnerability in Foxitsoftware Phantompdf
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.
network
low complexity
foxitsoftware CWE-400
5.0
2020-06-04 CVE-2020-13810 Improper Verification of Cryptographic Signature vulnerability in Foxitsoftware Phantompdf
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2.
network
low complexity
foxitsoftware CWE-347
5.0