Information Disclosure Vulnerability in Dompdf by Dominik Homberger
CVE-2014-5011
6.5MEDIUM
What is CVE-2014-5011?
The Dompdf library, widely used for converting HTML to PDF files, contains a vulnerability that allows for unauthorized information disclosure. Versions prior to 0.6.2 are susceptible to this flaw, which may enable attackers to access sensitive data through crafted requests. It is critical for users of Dompdf to update to version 0.6.2 or later to mitigate this risk and protect their applications from inadvertent data exposure.