CVE-2018-3757: PDF-Image Project PDF-Image

Critical severity, CVSS 9.8. EPSS: 4.5% chance of exploitation in the next 30 days.

Command injection exists in pdf-image v2.0.0 due to an unescaped string parameter.

Affected products

Published 2018-06-01. Last modified 2026-06-17.