Pdfbook Project develops a PDF generation and manipulation tool that has surfaced disclosures centered on command-injection vulnerabilities in input handling. The recurring weakness reflects the risk inherent in processing user-supplied content and passing it to underlying system utilities without proper sanitization.
The number and severity of CVEs published that impact products developed by Pdfbook Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-24612CRITICAL The PdfBook extension through 2.0.5 before b07b6a64 for MediaWiki allows command injection via an option. | Jan 30, 2023 | 9.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pdfbook Project.
Media articles that mention a CVE ID that affects a product developed by Pdfbook Project — matched by CVE ID, not by vendor name.