Kumaf's vulnerability footprint centers on pyhtml2pdf, a web-to-PDF conversion utility, with the durable signal centered on input-handling weaknesses such as cross-site scripting arising from insufficient neutralization during page generation. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kumaf over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-1647HIGH Pyhtml2pdf version 0.0.6 allows an external attacker to remotely obtain
arbitrary local files. This is possible because the application does not
validate the HTML content entered | Feb 20, 2024 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kumaf.
Media articles that mention a CVE ID that affects a product developed by Kumaf — matched by CVE ID, not by vendor name.