CVE-2026-57535 PUBLISHED

Assigner: rami.io
Reserved: 24.06.2026 Published: 25.06.2026 Updated: 25.06.2026

Content injected to PDF rendering contexts could, in many places, include HTML content including <img> tags. If the src attribute of these images pointed to an URL, the PDF rendering engine would download the image from that place and display it, thereby leaking information about the rendering server and possibly creating an SSRF vector in the local network.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:P/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L
CVSS Score: 2.1

Product Status

Vendor pretix
Product pretix
Versions Default: unaffected
  • affected from 0 to 2026.3.4 (excl.)
  • affected from 2026.4.0 to 2026.4.4 (excl.)
  • affected from 2026.5.0 to 2026.5.2 (excl.)

Credits

  • Rokkam Vamshi finder

References

Problem Types

  • CWE-80 Improper neutralization of Script-Related HTML tags in a web page (basic XSS) CWE

Impacts

  • CAPEC-664 Server Side Request Forgery