Apryse HTML2PDF SDK是美国Apryse公司的一个文件格式转换组件。 Apryse HTML2PDF SDK 11.6.0及之前版本存在安全漏洞,该漏洞源于InsertFromHtmlString函数存在本地文件包含和服务端请求伪造,可能导致读取服务器本地文件或发起任意HTTP请求,进而泄露敏感数据或接管系统。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-69822 | Atomberg Erica Smart Fan 安全漏洞 | |
| CVE-2025-69764 | Tenda Ax3 安全漏洞 | |
| CVE-2025-69821 | beatXP VEGA Smartwatch 安全漏洞 | |
| CVE-2025-69820 | beam 安全漏洞 | |
| CVE-2025-69612 | TMS Management Console 安全漏洞 | |
| CVE-2025-67221 | orjson 安全漏洞 | |
| CVE-2025-70899 | PHPGurukul Online Course Registration 安全漏洞 | |
| CVE-2025-69828 | TMS Management Console 安全漏洞 | |
| CVE-2025-56590 | Apryse HTML2PDF SDK 安全漏洞 | |
| CVE-2025-66428 | WebPros WordPress Toolkit 安全漏洞 |
No comments yet