Vulnerabilities > Pdfzorro

DATE CVE VULNERABILITY TITLE RISK
2023-03-30 CVE-2022-30351 Improper Encoding or Escaping of Output vulnerability in Pdfzorro R20220428
PDFZorro PDFZorro Online r20220428 using TCPDF 6.2.5, despite having workflows claiming to correctly remove redacted information from a supplied PDF file, does not properly sanitize this information in all cases, causing redacted information, including images and text embedded in the PDF file, to be leaked unintentionally.
network
low complexity
pdfzorro CWE-116
7.5