VendorsiTextPDFitext7.0.1
Vulnerabilities

iTextPDF iText 7.0.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2017-9096
The XML parsers in iText before 5.5.12 and 7.x before 7.0.3 do not disable external entities, which might allow remote attackers to conduct XML external entity (XXE) attacks via a crafted PDF.
Published 2017-11-08 · Modified
8.8EPSS 0.096