In mapfish-print before version 3.24, a user can use the JSONP support to do a Cross-site scripting.
9.3CVSS
5.9AI Score
0.001EPSS
In mapfish-print before version 3.24, a user can do to an XML External Entity (XXE) attack with the provided SDL style.
9.3CVSS
9.1AI Score
0.002EPSS