Deprecated legacy PDF engine for PHP. Use instead tecnickcom/tc-lib-pdf.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10262 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. tecnickcom/tcpdf is vulnerable to Deserialization of Untrusted Data in versions 6.0.013 - 6.9.1. | 6.0.013 - 6.9.1 | Critical |
CVE-2024-56527 tecnickcom/tcpdf is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 6.8.0. | 0.0.0 - 6.8.0 | Medium |
CVE-2024-56522 tecnickcom/tcpdf is vulnerable to Incorrect Comparison in versions 0.0.0 - 6.8.0. | 0.0.0 - 6.8.0 | High |
CVE-2024-56521 tecnickcom/tcpdf is vulnerable to Improper Certificate Validation in versions 0.0.0 - 6.8.0. | 0.0.0 - 6.8.0 | High |
CVE-2024-56519 tecnickcom/tcpdf is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 6.8.0. | 0.0.0 - 6.8.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
tecnickcom/tc-lib-pdf Version ^8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant