7.5
CVSSv3

CVE-2023-46303

Published: 22/10/2023 Updated: 28/10/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

link_to_local_path in ebooks/conversion/plugins/html_input.py in calibre prior to 6.19.0 can, by default, add resources outside of the document root.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

calibre-ebook calibre

Github Repositories

CVE-2023-46303 - SSRF Vulnerability in PANDOC and CALIBRE

🐝 CVE-2023-46303 SSRF Vulnerability in PANDOC and CALIBRE UPDATE -> nvdnistgov/vuln/detail/CVE-2023-46303 securitysnykio/vuln/SNYK-DEBIAN13-CALIBRE-6027875 πŸ„ PANDOC πŸ•ΈοΈ githubcom/jgm/pandoc (Pandoc in Github) What is Pandoc? Pandoc is a Universal Markup Converter πŸ„ CALIBRE πŸ•ΈοΈ githubcom/kovidgoyal/cal