Directory traversal vulnerability in wkhtmltopdf through 0.12.5 allows remote attackers to read local files and disclose sensitive information via a crafted html file running with the default configurations.
References
Link Resource
https://github.com/wkhtmltopdf/wkhtmltopdf/issues/4536 Exploit Issue Tracking Third Party Advisory
https://lists.debian.org/debian-lts-announce/2022/10/msg00027.html Mailing List Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-08-15T00:00:00

Updated: 2022-10-25T00:00:00

Reserved: 2020-08-13T00:00:00


Link: CVE-2020-21365

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-08-15T20:15:08.107

Modified: 2022-11-07T17:44:26.610


Link: CVE-2020-21365

JSON object: View

cve-icon Redhat Information

No data.

CWE