VYPR

Go modules package

code.sajari.com/docconv

pkg:golang/code.sajari.com/docconv

Vulnerabilities (2)

  • CVE-2022-4741Dec 25, 2022
    affected < 1.2.1fixed 1.2.1

    A vulnerability was found in docconv up to 1.2.0 and classified as problematic. This issue affects the function ConvertDocx/ConvertODT/ConvertPages/ConvertXML/XMLToText. The manipulation leads to uncontrolled memory allocation. The attack may be initiated remotely. Upgrading to v

  • CVE-2022-4643Dec 21, 2022
    affected >= 1.1.0, < 1.3.5fixed 1.3.5

    A vulnerability was found in docconv up to 1.2.0. It has been declared as critical. This vulnerability affects the function ConvertPDFImages of the file pdf_ocr.go. The manipulation of the argument path leads to os command injection. The attack can be initiated remotely. Upgradin