Expertpdf develops a document-conversion and PDF-generation library with a narrowly scoped product footprint centered on the Expertpdf product itself. The durable signal in its disclosed vulnerabilities centers on insecure file and directory handling, reflecting the file I/O and external-resource exposure inherent to document-processing systems. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Expertpdf over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-35340HIGH A local file inclusion vulnerability in ExpertPDF 9.5.0 through 14.1.0 allows attackers to read the file contents from files that the running ExpertPDF process has access to read. | Sep 15, 2021 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Expertpdf.
Media articles that mention a CVE ID that affects a product developed by Expertpdf — matched by CVE ID, not by vendor name.