← Πίσω στην αναζήτηση CVE

CVE-2026-56722

Dompdf

Περιγραφή

Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, aAn attacker who controls the HTML input can bypass this restriction by embedding a target file path inside an SVG image delivered through a data: URI, because dompdf processes the SVG twice and the second pass does not enforce the same protections as the first. When rendering, dompdf hands the SVG to the separate php-svg-lib library with external references forced on, and that library has no knowledge of the chroot directory, blocks only the phar:// scheme, and ultimately reads the referenced file with no path or protocol validation. This lets an external, unauthenticated attacker read arbitrary image files from the server-s file system in the default configuration. This issue has been fixed in version 3.16.

CVSS 5.3EPSS 0.44799999999999995%Κίνδυνος 0.55
Προβολή πηγής
Δημοσίευση
2026-07-28 21:17:28
Επηρεαζόμενες εκδόσεις
<=3.15
Τύπος
Βιβλιοθήκη
Τελευταία τροποποίηση
2026-08-04 16:39:54
Διάνυσμα
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N