7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description
Versions of the package pdfmake before 0.3.0-beta.17 are vulnerable to Allocation of Resources Without Limits or Throttling via repeatedly redirect URL in file embedding. An attacker can cause the application to crash or become unresponsive by providing crafted input that triggers this condition.
Basic Information
ID
CVE-2025-11362
Source
snyk
Published
Oct 7, 2025 at 05:00
Affected Product
Vendor
n/a
Product
pdfmake
Affected Versions
n/a pdfmake 0