CVE-2020-13452: Thecodingmachine Gotenberg
Critical severity, CVSS 9.8. EPSS: 2.9% chance of exploitation in the next 30 days.
In Gotenberg through 6.2.1, insecure permissions for tini (writable by user gotenberg) potentially allow an attacker to overwrite the file, which can lead to denial of service or code execution.
Affected products
- Thecodingmachine Gotenberg: up to and including 6.2.1
Published 2021-01-07. Last modified 2026-06-17.