Vulnerabilities tagged "filter-bypass"

[Dompdf] RCE via Polyglot phar/ttf File

This vulnerability builds on/is complicated by two past issues.The first being an RCE via caching of remote font files, we discussed this vulnerability on [Episode 129](https://dayzerosec.com/vulns/2022/03/21/from-xss-to-rce-dompdf-0day.html)...
 
1
2
3