CVE-2024-9075 | Stirling-Tools Stirling-PDF up to 0.28.3 Markdown-to-PDF cross site scripting
A vulnerability was found in Stirling-Tools Stirling-PDF up to 0.28.3. It has been declared as problematic. This vulnerability affects unknown code of the component Markdown-to-PDF. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-9075. The attack can be initiated remotely. There is no exploit available.
The vendor explains that "this functionality was removed in 0.29.0 already" and "we plan to re-add at later date with issue resolved".
It is recommended to upgrade the affected component.