openhtmltopdf icon indicating copy to clipboard operation
openhtmltopdf copied to clipboard

CVE-2021-37714: update jsoup

Open goto1134 opened this issue 2 years ago • 1 comments

openhtmltopdf-jsoup-dom-converter has org.jsoup:jsoup:1.11.3 depencency. This version is vulnerable to CVE-2021-37714.

To fix it, follow the advice https://github.com/jhy/jsoup/security/advisories/GHSA-m72m-mhq2-9p6c and update to org.jsoup:jsoup:1.14.2 and higher.

goto1134 avatar Apr 20 '22 09:04 goto1134

hi @goto1134 , as https://github.com/danfickle/openhtmltopdf#101-2019-november-18 "https://github.com/danfickle/openhtmltopdf/issues/339 Remove the JSoup to DOM converter module." , the module "openhtmltopdf-jsoup-dom-converter" is no more built and supported.

syjer avatar Apr 27 '22 21:04 syjer