Stirlingpdf

Stirling Pdf

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 4.79%
  • Veröffentlicht 11.08.2025 22:28:30
  • Zuletzt bearbeitet 15.08.2025 18:05:12

Stirling-PDF is a locally hosted web application that performs various operations on PDF files. Prior to version 1.1.0, when using the /api/v1/convert/markdown/pdf endpoint to convert Markdown to PDF, the backend calls a third-party tool to process i...

  • EPSS 0.06%
  • Veröffentlicht 11.08.2025 21:57:14
  • Zuletzt bearbeitet 15.08.2025 18:08:51

Stirling-PDF is a locally hosted web application that performs various operations on PDF files. Prior to version 1.1.0, when using the /api/v1/convert/html/pdf endpoint to convert HTML to PDF, the backend calls a third-party tool to process it and in...

  • EPSS 0.06%
  • Veröffentlicht 11.08.2025 21:56:54
  • Zuletzt bearbeitet 15.08.2025 18:06:27

Stirling-PDF is a locally hosted web application that performs various operations on PDF files. Prior to version 1.1.0, the "convert file to pdf" functionality (/api/v1/convert/file/pdf) uses LibreOffice's unoconvert tool for conversion, and SSRF vul...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 01.05.2025 17:20:46
  • Zuletzt bearbeitet 06.02.2026 20:16:07

Stirling-PDF is a locally hosted web application that allows you to perform various operations on PDF files. Prior to version 0.45.0, Stirling-PDF is vulnerable to SSRF-induced arbitrary file read. WeasyPrint redefines a set of HTML tags, including i...

  • EPSS 0.28%
  • Veröffentlicht 19.12.2024 16:15:09
  • Zuletzt bearbeitet 02.01.2025 20:16:05

A Server-Side Request Forgery (SSRF) in the endpoint http://{your-server}/url-to-pdf of Stirling-PDF 0.35.1 allows attackers to access sensitive information via a crafted request.

  • EPSS 0.17%
  • Veröffentlicht 11.11.2024 20:15:19
  • Zuletzt bearbeitet 09.01.2025 15:15:18

Stirling-PDF is a locally hosted web application that allows you to perform various operations on PDF files. In affected versions the Merge functionality takes untrusted user input (file name) and uses it directly in the creation of HTML pages allowi...

Exploit
  • EPSS 0.13%
  • Veröffentlicht 21.09.2024 23:15:14
  • Zuletzt bearbeitet 30.09.2024 15:27:39

A vulnerability was found in Stirling-Tools Stirling-PDF up to 0.28.3. It has been declared as problematic. This vulnerability affects unknown code of the component Markdown-to-PDF. The manipulation leads to cross site scripting. The attack can be in...