ng2-pdfjs-viewer icon indicating copy to clipboard operation
ng2-pdfjs-viewer copied to clipboard

Posible javascript injection

Open MerlijnvdBerg opened this issue 2 years ago • 1 comments

PDF actions can contain javascript which is then run on load.

Angular: 14.1.1 ng2-pdfjs-viewer: 14.0

<<
/Type /Action
/S /JavaScript
/JS (this.print\({bUI:true,bSilent:false,bShrinkToFit:true}\);)
>>

I can not share the PDF due to confidential information. but it contains the above action.

MerlijnvdBerg avatar Mar 08 '23 15:03 MerlijnvdBerg

@MerlijnvdBerg I will look into this.

codehippie1 avatar May 31 '24 00:05 codehippie1