Metrics
Affected Vendors & Products
Mon, 02 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 28 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mpdf Project
Mpdf Project mpdf |
|
| CPEs | cpe:2.3:a:mpdf_project:mpdf:7.0.0:-:*:*:*:*:*:* | |
| Vendors & Products |
Mpdf Project
Mpdf Project mpdf |
Wed, 14 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 14 Jan 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mpdf1
Mpdf1 mpdf |
|
| Vendors & Products |
Mpdf1
Mpdf1 mpdf |
Tue, 13 Jan 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | mPDF 7.0 contains a local file inclusion vulnerability that allows attackers to read arbitrary system files by manipulating annotation file parameters. Attackers can generate URL-encoded or base64 payloads to include local files through crafted annotation content with file path specifications. | |
| Title | mPDF 7.0 - Local File Inclusion | |
| Weaknesses | CWE-98 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-02T15:58:18.027Z
Reserved: 2026-01-10T15:05:18.988Z
Link: CVE-2022-50897
Updated: 2026-01-14T15:53:08.107Z
Status : Modified
Published: 2026-01-13T23:15:51.650
Modified: 2026-02-02T16:16:15.843
Link: CVE-2022-50897
No data.