0.005 Low
EPSS
Percentile
76.0%
html-pdf is vulnerable to arbitrary code execution. The vulnerability exists as it does not sanitize html input, allowing information to be exfiltrated through arbitrary XHR requests.
github.com/marcbachmann/node-html-pdf/commit/c12d6977778014139183c9f8da7579fd7ac65362
security.netapp.com/advisory/ntap-20191017-0005/
www.npmjs.com/advisories/1095