Known vulnerabilities in iText
Vendor:
iText Group NV
Software:
iText
Software CPE:
cpe:2.3:a:itext_group_nv:itext:*:*:*:*:*:*:*:*
Website:
https://itextpdf.com/en
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
9.7.0
9.6.0
9.5.0
9.4.0
9.3.0
9.2.0
9.1.0
9.0.0
8.0.5
8.0.4
8.0.3
7.2.6
7.1.19
8.0.2
8.0.1
8.0.0
7.2.5
7.1.18
7.2.4
7.2.3
7.2.2
7.2.1
7.2.0
7.1.17
7.1.16
7.1.15
7.1.14
7.1.13
7.1.12
7.1.11
1.3
7.1.10
1.0.0
1.2
7.1.9
7.1.8
7
5
7.1.7
7.1.6
7.1.5
7.1.4
7.1.3
7.1.2
7.1.1
7.1.0
7.0.8
7.0.7
7.0.6
7.0.5
7.0.4
7.0.3
7.0.2
7.0.1
7.0.0
5.5.13.1
5.5.13
5.5.12
5.5.11
5.5.10
5.5.9
5.5.8
5.5.7
5.5.6
5.5.5
5.5.4
5.5.3
5.5.2
5.5.1
5.5.0
5.4.5
5.4.4
5.4.3
5.4.2
5.4.1
5.4.0
5.3.5
5.3.4
5.3.3
5.3.2
5.3.1
5.3.0
5.2.1
5.2.0
5.1.3
5.1.2
5.1.1
5.1.0
5.0.6
5.0.5
5.0.4
5.0.3
5.0.2
5.0.1
5.0.0
2.1.7
2.1.6
2.1.5
2.1.4
2.1.3
2.1.2
2.1.1
2.1.0
2.0.8
2.0.7
2.0.6
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0
1.4.8
1.3.7
1.2.4
0.99
0.89
0.70
0.39
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU71373 - Command injection CVE-2021-43113 |
CWE-77 | High | 7.1.17 | 20.01.2023 |
SB2021121539 SB2023012005 SB20230719103 and 3 more |
||
| #VU62060 - Stack-based buffer overflow CVE-2022-24197 |
CWE-121 | Medium | 7.2.2 | 11.04.2022 |
SB2022020182 SB2023100939 |
||
| #VU62059 - Allocation of Resources Without Limits or Throttling CVE-2022-24196 |
CWE-770 | Medium | 7.2.2 | 11.04.2022 |
SB2022020182 SB2023100938 |
||
| #VU31399 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2017-9096 |
CWE-611 | High | 5.5.12 | 08.11.2017 |
SB2017110815 SB2020102845 SB2023042118 and 3 more |