Bugzilla – Bug 1202407
VUL-0: CVE-2020-21365: wkhtmltopdf: Directory traversal vulnerability in wkhtmltopdf
Last modified: 2022-09-22 10:18:44 UTC
CVE-2020-21365 Directory traversal vulnerability in wkhtmltopdf through 0.12.5 allows remote attackers to read local files and disclose sensitive information via a crafted html file running with the default configurations. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-21365 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-21365 https://github.com/wkhtmltopdf/wkhtmltopdf/issues/4536
Affected: - openSUSE:Backports:SLE-15-SP3/wkhtmltopdf 0.12.4 - openSUSE:Backports:SLE-15-SP4/wkhtmltopdf 0.12.4