← Zurück zur CVE-Suche

CVE-2026-56722

Dompdf

Beschreibung

Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, aAn attacker who controls the HTML input can bypass this restriction by embedding a target file path inside an SVG image delivered through a data: URI, because dompdf processes the SVG twice and the second pass does not enforce the same protections as the first. When rendering, dompdf hands the SVG to the separate php-svg-lib library with external references forced on, and that library has no knowledge of the chroot directory, blocks only the phar:// scheme, and ultimately reads the referenced file with no path or protocol validation. This lets an external, unauthenticated attacker read arbitrary image files from the server-s file system in the default configuration. This issue has been fixed in version 3.16.

CVSS 5.3EPSS 0.44799999999999995%Risiko 0.55
Quelle öffnen
Veröffentlicht
2026-07-28 21:17:28
Betroffene Versionen
<=3.15
Typ
Bibliothek
Zuletzt geändert
2026-08-04 16:39:54
Vektor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N