GHSA-4m3g-6r7g-jv4f: Arbitrary JavaScript execution due to using outdated libraries
gradio-pdf projects with dependencies on the pdf.js library are vulnerable to CVE-2024-4367, which allows arbitrary JavaScript execution.
References
Detect and mitigate GHSA-4m3g-6r7g-jv4f with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →