TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color.
References
Configurations
History
04 Nov 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Information
Published : 2024-04-19 16:15
Updated : 2025-11-04 18:15
NVD link : CVE-2024-22640
Mitre link : CVE-2024-22640
CVE.ORG link : CVE-2024-22640
JSON object : View
Products Affected
fedoraproject
- fedora
tcpdf_project
- tcpdf
CWE
CWE-1333
Inefficient Regular Expression Complexity
