Vulnerabilities
Vulnerable Software
Parall:  Security Vulnerabilities
This affects the package jspdf before 2.3.1. ReDoS is possible via the addImage function.
CVSS Score
5.9
EPSS Score
0.013
Published
2021-03-09
All affected versions <2.0.0 of package jspdf are vulnerable to Cross-site Scripting (XSS). It is possible to inject JavaScript code via the html method.
CVSS Score
6.1
EPSS Score
0.002
Published
2020-07-06
In all versions of the package jspdf, it is possible to use <<script>script> in order to go over the filtering regex.
CVSS Score
6.3
EPSS Score
0.002
Published
2020-07-06


Contact Us

Shodan ® - All rights reserved