danfickle/openhtmltopdf

vulnerable dependency xmlgraphics-commons

electrofLy opened this issue · 0 comments

The package xmlgraphics-commons-2.4.jar is vulnerable. See https://nvd.nist.gov/vuln/detail/CVE-2020-11988

Solution: update to xmlgraphics-commons-2.6.jar