• caglararli@hotmail.com
  • 05386281520

CVE-2024-28109 | veraPDF-library up to 1.24.1 XSL Transform xml injection

Çağlar Arlı      -    8 Views

CVE-2024-28109 | veraPDF-library up to 1.24.1 XSL Transform xml injection

A vulnerability was found in veraPDF-library up to 1.24.1. It has been classified as critical. Affected is an unknown function of the component XSL Transform Handler. The manipulation leads to xml injection. This vulnerability is traded as CVE-2024-28109. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected component.