9.2.0
9 years ago
1 months ago
Known vulnerabilities in the com.itextpdf:io package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
com.itextpdf:io is a package that represents the next level of SDKs for developers that want to take advantage of the benefits PDF can bring. Equipped with a better document engine, high and low-level programming capabilities and the ability to create, edit and enhance PDF documents, iText 7 can be a boon to nearly every workflow. Affected versions of this package are vulnerable to Denial of Service (DoS) via the component How to fix Denial of Service (DoS)? Upgrade | [,7.2.2) |
com.itextpdf:io is a package that represents the next level of SDKs for developers that want to take advantage of the benefits PDF can bring. Equipped with a better document engine, high and low-level programming capabilities and the ability to create, edit and enhance PDF documents, iText 7 can be a boon to nearly every workflow. Affected versions of this package are vulnerable to Command Injection. An attacker controlling the filename passed to the How to fix Command Injection? Upgrade | [,7.1.17) |