Tcpdf Project Tcpdf 6.7.7

CPE Details

Tcpdf Project Tcpdf 6.7.7
6.7.7
2025-04-17
15h44 +00:00
2025-04-17
15h44 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:tcpdf_project:tcpdf:6.7.7:*:*:*:*:*:*:*

Informations

Vendor

tcpdf_project

Product

tcpdf

Version

6.7.7

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-56521 2024-12-27 00h00 +00:00 An issue was discovered in TCPDF before 6.8.0. If libcurl is used, CURLOPT_SSL_VERIFYHOST and CURLOPT_SSL_VERIFYPEER are set unsafely.
9.8
Critical
CVE-2024-56527 2024-12-27 00h00 +00:00 An issue was discovered in TCPDF before 6.8.0. The Error function lacks an htmlspecialchars call for the error message.
7.5
High
CVE-2024-56519 2024-12-26 23h00 +00:00 An issue was discovered in TCPDF before 6.8.0. setSVGStyles does not sanitize the SVG font-family attribute.
7.5
High
CVE-2024-56522 2024-12-26 23h00 +00:00 An issue was discovered in TCPDF before 6.8.0. unserializeTCPDFtag uses != (aka loose comparison) and does not use a constant-time function to compare TCPDF tag hashes.
7.5
High