Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-3940
  • PyPI/weasyprint
weasyprint Has Server-Side Request Forgery (SSRF) 10 Sep
  • Fix available
  • Severity - 6.2 (Medium)
GHSA-jf6q-chmf-3h3v
  • PyPI/weasyprint
weasyprint Has Server-Side Request Forgery (SSRF) 09 Sep
  • Fix available
  • Severity - 6.2 (Medium)
PYSEC-2026-3412
  • PyPI/weasyprint
WeasyPrint has CSS Injection via Presentational Hints 13 Jul
  • No fix available
  • Severity - 6.5 (Medium)
PYSEC-2026-2034
  • PyPI/weasyprint
WeasyPrint has a Server-Side Request Forgery (SSRF) Protection Bypass via HTTP Redirect 07 Jul
  • Fix available
  • Severity - 7.5 (High)
PYSEC-2026-2033
  • PyPI/weasyprint
WeasyPrint allows the attachment of arbitrary files and URLs to a PDF 07 Jul
  • Fix available
  • Severity - 7.4 (High)
GHSA-jhhc-3hcp-qhm5
  • PyPI/weasyprint
WeasyPrint has CSS Injection via Presentational Hints 06 Jul
  • No fix available
  • Severity - 6.5 (Medium)
GHSA-983w-rhvv-gwmv
  • PyPI/weasyprint
WeasyPrint has a Server-Side Request Forgery (SSRF) Protection Bypass via HTTP Redirect 20 Jan
  • Fix available
  • Severity - 7.5 (High)
GHSA-35jj-wx47-4w8r
  • PyPI/weasyprint
WeasyPrint allows the attachment of arbitrary files and URLs to a PDF 08 Mar 2024
  • Fix available
  • Severity - 7.4 (High)