Filtered by vendor Parall Subscriptions
Filtered by product Jspdf Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-23353 1 Parall 1 Jspdf 2024-09-17 5.9 Medium
This affects the package jspdf before 2.3.1. ReDoS is possible via the addImage function.
CVE-2020-7691 1 Parall 1 Jspdf 2024-09-16 6.3 Medium
In all versions of the package jspdf, it is possible to use <<script>script> in order to go over the filtering regex.
CVE-2020-7690 1 Parall 1 Jspdf 2024-08-04 6.1 Medium
All affected versions <2.0.0 of package jspdf are vulnerable to Cross-site Scripting (XSS). It is possible to inject JavaScript code via the html method.