Vulnerability index

Browse CVEs

23 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Flowpaper MEDIUM 5.4
CVE-2023-5200

The flowpaper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'flipbook' shortcode in versions up to, and including, 2.0.3 due …

Fix: after 2.0.3
Fix from $1,600 2023-10-20
Flowpaper MEDIUM 5.4
CVE-2023-40197

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Devaldi Ltd flowpaper plugin <= 1.9.9 versions.

Fix: 2.0.0+
Fix from $1,600 2023-09-04
Pdf2json CRITICAL 9.8
CVE-2020-23878

pdf2json v0.71 was discovered to contain a stack buffer overflow in the component XRef::fetch.

No fix yet
Fix from $2,300 2021-11-10
Pdf2json HIGH 7.5
CVE-2020-23879

pdf2json v0.71 was discovered to contain a NULL pointer dereference in the component ObjectStream::getObject.

No fix yet
Fix from $1,950 2021-11-10
Pdf2json MEDIUM 5.5
CVE-2020-19463

An issue has been found in function vfprintf in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow.

No fix yet
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19464

An issue has been found in function XRef::fetch in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow .

No fix yet
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19465

An issue has been found in function ObjectStream::getObject in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid rea…

No fix yet
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19466

An issue has been found in function DCTStream::transformDataUnit in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invali…

No fix yet
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19467

An issue has been found in function DCTStream::transformDataUnit in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an Illega…

No fix yet
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19468

An issue has been found in function EmbedStream::getChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a null pointer de…

No fix yet
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19469

An issue has been found in function DCTStream::reset in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid write of s…

Patch available
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19470

An issue has been found in function DCTStream::getChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a NULL pointer dere…

Patch available
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19471

An issue has been found in function DCTStream::decodeImage in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid read…

Patch available
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19472

An issue has been found in function DCTStream::readHuffSym in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid read…

Patch available
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19473

An issue has been found in function DCTStream::decodeImage in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an uncaught flo…

Patch available
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19474

An issue has been found in function Gfx::doShowText in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an Use After Free .

Patch available
Fix from $1,600 2021-07-21
Pdf2json MEDIUM 5.5
CVE-2020-19475

An issue has been found in function CCITTFaxStream::lookChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid wr…

Patch available
Fix from $1,600 2021-07-21
Pdf2json HIGH 7.8
CVE-2020-18750

Buffer overflow in pdf2json 0.69 allows local users to execute arbitrary code by converting a crafted PDF file.

Patch available
Fix from $1,950 2021-02-05
Flexpaper CRITICAL 9.8
CVE-2018-11686EPSS 53%

The Publish Service in FlexPaper (later renamed FlowPaper) 2.3.6 allows remote code execution via setup.php and change_config.php.

Fix: after 2.3.6
Fix from $2,300 2019-07-03
Pdf2json HIGH 8.8
CVE-2018-14946

An issue has been found in PDF2JSON 0.69. The HtmlString class in ImgOutputDev.cc has Mismatched Memory Management Routines (malloc versus operator d…

No fix yet
Fix from $1,950 2018-08-05
Pdf2json HIGH 8.8
CVE-2018-14947

An issue has been found in PDF2JSON 0.69. XmlFontAccu::CSStyle in XmlFonts.cc has Mismatched Memory Management Routines (operator new [] versus opera…

No fix yet
Fix from $1,950 2018-08-05
Flexpaper MEDIUM 6.1
CVE-2014-9677

Cross-site scripting (XSS) vulnerability in FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to inject arbitrary web script or H…

Fix: after 2.3.0
Fix from $1,600 2017-10-17
Flexpaper MEDIUM 6.1
CVE-2014-9678

FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to conduct content-spoofing attacks via the Swfile parameter.

Fix: after 2.3.0
Fix from $1,600 2017-10-17