CVE-2022-41343

7.5HIGH

registerFont in FontMetrics.php in Dompdf before 2.0.1 allows remote file inclusion because a URI validation failure does not halt font registration, as demonstrated by a @font-face rule.

Опубликовано: 9/25/2022Обновлено: 5/22/2025

Описание

registerFont in FontMetrics.php in Dompdf before 2.0.1 allows remote file inclusion because a URI validation failure does not halt font registration, as demonstrated by a @font-face rule.

ИИ-АнализНа базе ИИ

Затронутые продукты

dompdf_projectdompdf

Ссылки