jsPDF
Security Risk Profile
34
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 8 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from March 18, 2025 to present
8
Total CVEs
7
Critical+High
1
Exploited
5
Unpatched
Threat Assessment
Avg CVSS
7.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
5
Critical/High
Risk Level
34/100
low
⚠️ 1 Active Exploits
Severity Distribution
Critical
0High
7Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
1
2
Input Validation
1
Most Affected Products
1. jsPDF jsPDF9
2. npm/jspdf2
3. parall jspdf Node.js2
Recent Vulnerabilities
See more →REDHAT-BUG-2448547
CVSS 7.0high
3/18/2026🔧 No Patch
REDHAT-BUG-2441016
CVSS 7.0high
2/19/2026🔧 No Patch
REDHAT-BUG-2440993
CVSS 7.0high
2/19/2026🔧 No Patch
REDHAT-BUG-2440992
CVSS 7.0high
2/19/2026🔧 No Patch
https://www.bleepingcomputer.com/news/security/critical-jspdf-flaw-lets-hackers-steal-secrets-via-generated-pdfs/
unknown
Critical jsPDF flaw lets hackers steal secrets via generated PDFs
1/7/2026⚠ Exploited🔧 No Patch
REDHAT-BUG-2427236
CVSS 7.0high
1/5/2026🔧 No Patch
CVE-2025-57810
CVSS 8.7high
jsPDF Parsing of Corrupt PNGs Leads to Potential Denial of Service (DoS)
8/26/2025
CVE-2025-29907
CVSS 8.7EPSS 0%high
jsPDF Bypass Regular Expression Denial of Service (ReDoS)
3/18/2025
Monitor jsPDF in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.