DOMPDF before 0.6.2 allows Information Disclosure.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://github.com/dompdf/dompdf/releases/tag/v0.6.2 | third party advisory release notes |
https://github.com/dompdf/dompdf/compare/v0.6.1...v0.6.2 | third party advisory patch |