PoDoFo是PoDoFo开源的一个免费的可移植 C++ 库。 PoDoFo 1.1.0-dev版本存在安全漏洞,该漏洞源于src/podofo/main/PdfTokenizer.cpp文件中的PdfTokenizer::DetermineDataType函数存在释放后重用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | PoDoFo | 1.1.0-dev | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-9390 | 5.3 MEDIUM | vim xxd xxd.c main buffer overflow |
| CVE-2025-9388 | 3.5 LOW | Scada-LTS watch_list.shtm cross site scripting |
| CVE-2025-9389 | 3.3 LOW | vim memmove-vec-unaligned-erms.S __memmove_avx_unaligned_erms memory corruption |
katana