The package pdfkit from 0.0.0 are vulnerable to Command Injection where the URL is not properly sanitized.
| Software | From | Fixed in |
|---|---|---|
| pdfkit_project / pdfkit | 0.0.0 | - |
| fedoraproject / fedora | 35 | 35.x |
| fedoraproject / fedora | 36 | 36.x |
| fedoraproject / fedora | 37 | 37.x |
pdfkit
|
- | 0.8.7.2 |