Versions of the package pdfmake before 0.3.0-beta.17 are vulnerable to Allocation of Resources Without Limits or Throttling via repeatedly redirect URL in file embedding. An attacker can cause the application to crash or become unresponsive by providing crafted input that triggers this condition.
Metrics
Affected Vendors & Products
References
History
Wed, 08 Oct 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Pdfmake Project
Pdfmake Project pdfmake |
|
Vendors & Products |
Pdfmake Project
Pdfmake Project pdfmake |
Tue, 07 Oct 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 06 Oct 2025 22:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Versions of the package pdfmake before 0.3.0-beta.17 are vulnerable to Allocation of Resources Without Limits or Throttling via repeatedly redirect URL in file embedding. An attacker can cause the application to crash or become unresponsive by providing crafted input that triggers this condition. | |
Weaknesses | CWE-770 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: snyk
Published: 2025-10-07T05:00:04.959Z
Updated: 2025-10-09T11:31:39.081Z
Reserved: 2025-10-06T11:52:09.777Z
Link: CVE-2025-11362

Updated: 2025-10-07T18:29:10.696Z

Status : Awaiting Analysis
Published: 2025-10-07T05:15:33.787
Modified: 2025-10-08T19:38:32.610
Link: CVE-2025-11362

No data.