TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color.
References
Configurations
History
No history.
Information
Published : 2024-04-19 16:15
Updated : 2025-11-04 18:15
NVD link : CVE-2024-22640
Mitre link : CVE-2024-22640
CVE.ORG link : CVE-2024-22640
JSON object : View
Products Affected
tcpdf_project
- tcpdf
fedoraproject
- fedora
CWE
CWE-1333
Inefficient Regular Expression Complexity
