Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Q3Rv0

#25719of 53,632
9.8Total CVSS
Vulnerabilities · 1
PT-2018-13869
9.8
2018-09-14
Tcpdf · Tcpdf · CVE-2018-17057
**Name of the Vulnerable Software and Affected Versions** TCPDF versions prior to 6.2.22 **Description** An issue allows attackers to trigger deserialization of arbitrary data via the `phar://` wrapper. **Recommendations** For versions prior to 6.2.22, update to version 6.2.22 or later to resolve the issue.