Cross-site scripting in jspdf
Modified: 11/8/2023
package
pkg:npm/jspdf
Cross-site scripting in jspdf
Modified: 11/8/2023
jspdf vulnerable to Regular Expression Denial of Service (ReDoS)
Modified: 1/14/2025
jsPDF Affected by Client-Side/Server-Side Denial of Service via Malicious GIF Dimensions
Modified: 9/10/2026
jsPDF has a PDF Object Injection via FreeText color
Modified: 9/10/2026
jsPDF Denial of Service (DoS)
Modified: 9/10/2026
jsPDF Vulnerable to Denial of Service (DoS) via Unvalidated BMP Dimensions in BMPDecoder
Modified: 9/10/2026
jsPDF has a PDF Object Injection via Unsanitized Input in addJS Method
Modified: 9/10/2026
jsPDF has Shared State Race Condition in addJS Plugin
Modified: 9/10/2026
jsPDF has Local File Inclusion/Path Traversal vulnerability
Modified: 9/10/2026
jsPDF has a PDF Injection in AcroForm module allows Arbitrary JavaScript Execution (RadioButton.createOption and "AS" property)
Modified: 9/10/2026
jsPDF has PDF Injection in AcroFormChoiceField that allows Arbitrary JavaScript Execution
Modified: 9/10/2026
Cross-site scripting in jspdf
Modified: 7/8/2026
jsPDF Vulnerable to Stored XMP Metadata Injection (Spoofing & Integrity Violation)
Modified: 9/10/2026
jsPDF Bypass Regular Expression Denial of Service (ReDoS)
Modified: 9/10/2026
jsPDF has HTML Injection in New Window paths
Modified: 9/10/2026