wallabag/tcpdf Security Advisories for 6.2.7 (1)
-
Attackers can trigger deserialization of arbitrary data via the phar:// wrapper.
PKSA-2zm6-dttg-zzbh CVE-2018-17057
Affected version: <6.2.22
Reported by:
FriendsOfPHP/security-advisories