VYPR
High severity8.8NVD Advisory· Published Jan 18, 2022· Updated Jun 17, 2026

CVE-2021-45394

CVE-2021-45394

Description

An issue was discovered in Spipu HTML2PDF before 5.2.4. Attackers can trigger deserialization of arbitrary data via the injection of a malicious tag in the converted HTML document.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
spipu/html2pdfPackagist
< 5.2.45.2.4

Affected products

3

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.