8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
# CVE-2024-4367 POC
## Usage
```bash
python poc.py mal.pdf "alert\('0xr2r')"
```
## References
- [CVE-2024-4367: Arbitrary JS Execution in PDF.js](https://codeanlabs.com/blog/research/cve-2024-4367-arbitrary-js-execution-in-pdf-js/)
- [PDF.js](https://github.com/mozilla/pdf.js/security/advisories/GHSA-wgrm-67xf-hhpq)
- [POC](https://www.youtube.com/watch?v=VxgEYQyx5EU)
## scaner
- [templates](https://github.com/0xr2r/templates-nucleir2r/blob/main/CVE-2024-4367.yaml)
-

## Usage
```bash
python poc.py mal.pdf "alert\('0xr2r')"
```
## References
- [CVE-2024-4367: Arbitrary JS Execution in PDF.js](https://codeanlabs.com/blog/research/cve-2024-4367-arbitrary-js-execution-in-pdf-js/)
- [PDF.js](https://github.com/mozilla/pdf.js/security/advisories/GHSA-wgrm-67xf-hhpq)
- [POC](https://www.youtube.com/watch?v=VxgEYQyx5EU)
## scaner
- [templates](https://github.com/0xr2r/templates-nucleir2r/blob/main/CVE-2024-4367.yaml)
-

Basic Information
ID
282E59D8-1AA6-5703-98A0-9E4242ECB856
Published
Aug 22, 2025 at 05:51
Modified
Aug 22, 2025 at 06:15