{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2026-25755",
        "tracking": {
            "current_release_date": "2026-03-23T00:47:54.019075Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2026-25755",
            "initial_release_date": "2026-02-19T15:34:58.415913Z",
            "revision_history": [
                {
                    "date": "2026-02-19T15:34:58.415913Z",
                    "number": "1",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-02-19T15:51:23.144854Z",
                    "number": "2",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2026-02-19T15:51:25.115052Z",
                    "number": "3",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-19T16:45:06.952168Z",
                    "number": "4",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2026-02-19T16:45:08.977697Z",
                    "number": "5",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-19T18:05:04.354462Z",
                    "number": "6",
                    "summary": "Unknown change."
                },
                {
                    "date": "2026-02-19T19:40:15.776549Z",
                    "number": "7",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (6).| CWES updated (1)."
                },
                {
                    "date": "2026-02-19T19:40:24.849871Z",
                    "number": "8",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-20T00:22:40.968651Z",
                    "number": "9",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (1).| References created (5).| CWES updated (1)."
                },
                {
                    "date": "2026-02-20T00:27:44.095978Z",
                    "number": "10",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (2).| Product Identifiers created (1).| Product Remediations created (2).| References created (6).| CWES updated (1).| Vendor_assessment created."
                },
                {
                    "date": "2026-02-20T00:27:55.544772Z",
                    "number": "11",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-20T14:13:51.503193Z",
                    "number": "12",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-02-20T14:13:53.608312Z",
                    "number": "13",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-23T19:32:36.561835Z",
                    "number": "14",
                    "summary": "Products connected (1).| Product Identifiers created (1).| Exploits created (1)."
                },
                {
                    "date": "2026-02-23T19:32:43.638025Z",
                    "number": "15",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T10:23:36.823406Z",
                    "number": "16",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (86).| References created (6).| CWES updated (1)."
                },
                {
                    "date": "2026-02-25T10:23:45.436519Z",
                    "number": "17",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T12:52:43.612747Z",
                    "number": "18",
                    "summary": "Products removed (43)."
                },
                {
                    "date": "2026-02-25T12:52:57.301106Z",
                    "number": "19",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-26T05:26:59.915629Z",
                    "number": "20",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-02T10:42:05.091001Z",
                    "number": "21",
                    "summary": "Products connected (43)."
                },
                {
                    "date": "2026-03-02T10:42:12.528182Z",
                    "number": "22",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-02T16:42:27.465703Z",
                    "number": "23",
                    "summary": "Products removed (43)."
                },
                {
                    "date": "2026-03-02T16:42:41.345450Z",
                    "number": "24",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-03T11:12:54.352091Z",
                    "number": "25",
                    "summary": "Products connected (43)."
                },
                {
                    "date": "2026-03-03T11:13:09.423788Z",
                    "number": "26",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T09:46:27.125224Z",
                    "number": "27",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                }
            ],
            "status": "interim",
            "version": "27"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/4",
                                "product": {
                                    "name": "vers:rpm/4",
                                    "product_id": "CSAFPID-1441083",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:advanced_cluster_security:4"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Advanced Cluster Security 4"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441085"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "rhacs-main-rhel8"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Advanced Cluster Security 4"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<4.2.0",
                                "product": {
                                    "name": "vers:unknown/<4.2.0",
                                    "product_id": "CSAFPID-5634391",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:parall:jspdf:*:*:*:*:*:node.js:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "jsPDF"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.135",
                                "product": {
                                    "name": "vers:unknown/1.1.135",
                                    "product_id": "CSAFPID-3731537"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.3.4",
                                "product": {
                                    "name": "vers:unknown/1.3.4",
                                    "product_id": "CSAFPID-3731538"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=0|<4.2.0",
                                "product": {
                                    "name": "vers:unknown/>=0|<4.2.0",
                                    "product_id": "CSAFPID-5637494"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v.1.4.0",
                                "product": {
                                    "name": "vers:unknown/v.1.4.0",
                                    "product_id": "CSAFPID-3731539"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.9.0",
                                "product": {
                                    "name": "vers:unknown/v0.9.0",
                                    "product_id": "CSAFPID-3731540"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.106",
                                "product": {
                                    "name": "vers:unknown/v1.0.106",
                                    "product_id": "CSAFPID-3731541"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.115",
                                "product": {
                                    "name": "vers:unknown/v1.0.115",
                                    "product_id": "CSAFPID-3731542"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.116",
                                "product": {
                                    "name": "vers:unknown/v1.0.116",
                                    "product_id": "CSAFPID-3731543"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.119",
                                "product": {
                                    "name": "vers:unknown/v1.0.119",
                                    "product_id": "CSAFPID-3731544"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.138",
                                "product": {
                                    "name": "vers:unknown/v1.0.138",
                                    "product_id": "CSAFPID-3731545"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.150",
                                "product": {
                                    "name": "vers:unknown/v1.0.150",
                                    "product_id": "CSAFPID-3731546"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.178",
                                "product": {
                                    "name": "vers:unknown/v1.0.178",
                                    "product_id": "CSAFPID-3731547"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.272",
                                "product": {
                                    "name": "vers:unknown/v1.0.272",
                                    "product_id": "CSAFPID-3731548"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.60",
                                "product": {
                                    "name": "vers:unknown/v1.2.60",
                                    "product_id": "CSAFPID-3731549"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.61",
                                "product": {
                                    "name": "vers:unknown/v1.2.61",
                                    "product_id": "CSAFPID-3731550"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.0",
                                "product": {
                                    "name": "vers:unknown/v1.3.0",
                                    "product_id": "CSAFPID-3731551"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.1",
                                "product": {
                                    "name": "vers:unknown/v1.3.1",
                                    "product_id": "CSAFPID-3731552"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.2",
                                "product": {
                                    "name": "vers:unknown/v1.3.2",
                                    "product_id": "CSAFPID-3731553"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.3",
                                "product": {
                                    "name": "vers:unknown/v1.3.3",
                                    "product_id": "CSAFPID-3731554"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.4",
                                "product": {
                                    "name": "vers:unknown/v1.3.4",
                                    "product_id": "CSAFPID-3731555"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.5",
                                "product": {
                                    "name": "vers:unknown/v1.3.5",
                                    "product_id": "CSAFPID-3731556"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.4.0",
                                "product": {
                                    "name": "vers:unknown/v1.4.0",
                                    "product_id": "CSAFPID-3731557"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.4.1",
                                "product": {
                                    "name": "vers:unknown/v1.4.1",
                                    "product_id": "CSAFPID-3731558"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.0",
                                "product": {
                                    "name": "vers:unknown/v1.5.0",
                                    "product_id": "CSAFPID-3731559"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.1",
                                "product": {
                                    "name": "vers:unknown/v1.5.1",
                                    "product_id": "CSAFPID-3731560"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.2",
                                "product": {
                                    "name": "vers:unknown/v1.5.2",
                                    "product_id": "CSAFPID-3731561"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.3",
                                "product": {
                                    "name": "vers:unknown/v1.5.3",
                                    "product_id": "CSAFPID-3731562"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2,1,0",
                                "product": {
                                    "name": "vers:unknown/v2,1,0",
                                    "product_id": "CSAFPID-3731563"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.0.0",
                                "product": {
                                    "name": "vers:unknown/v2.0.0",
                                    "product_id": "CSAFPID-3731564"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.1.1",
                                "product": {
                                    "name": "vers:unknown/v2.1.1",
                                    "product_id": "CSAFPID-3731565"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.2.0",
                                "product": {
                                    "name": "vers:unknown/v2.2.0",
                                    "product_id": "CSAFPID-3731566"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.3.0",
                                "product": {
                                    "name": "vers:unknown/v2.3.0",
                                    "product_id": "CSAFPID-3731567"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.3.1",
                                "product": {
                                    "name": "vers:unknown/v2.3.1",
                                    "product_id": "CSAFPID-3731568"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.4.0",
                                "product": {
                                    "name": "vers:unknown/v2.4.0",
                                    "product_id": "CSAFPID-3731569"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.5.0",
                                "product": {
                                    "name": "vers:unknown/v2.5.0",
                                    "product_id": "CSAFPID-3731570"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.5.1",
                                "product": {
                                    "name": "vers:unknown/v2.5.1",
                                    "product_id": "CSAFPID-3731571"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.5.2",
                                "product": {
                                    "name": "vers:unknown/v2.5.2",
                                    "product_id": "CSAFPID-3731572"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.0",
                                "product": {
                                    "name": "vers:unknown/v3.0.0",
                                    "product_id": "CSAFPID-3731573"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.1",
                                "product": {
                                    "name": "vers:unknown/v3.0.1",
                                    "product_id": "CSAFPID-3731574"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.2",
                                "product": {
                                    "name": "vers:unknown/v3.0.2",
                                    "product_id": "CSAFPID-5335932"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.3",
                                "product": {
                                    "name": "vers:unknown/v3.0.3",
                                    "product_id": "CSAFPID-5335933"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.4",
                                "product": {
                                    "name": "vers:unknown/v3.0.4",
                                    "product_id": "CSAFPID-5335934"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v4.0.0",
                                "product": {
                                    "name": "vers:unknown/v4.0.0",
                                    "product_id": "CSAFPID-5502987"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v4.1.0",
                                "product": {
                                    "name": "vers:unknown/v4.1.0",
                                    "product_id": "CSAFPID-5701933"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "jspdf"
                    }
                ],
                "category": "vendor",
                "name": "Parallax"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.135",
                                "product": {
                                    "name": "vers:unknown/1.1.135",
                                    "product_id": "CSAFPID-4429450"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.3.4",
                                "product": {
                                    "name": "vers:unknown/1.3.4",
                                    "product_id": "CSAFPID-4429451"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v.1.4.0",
                                "product": {
                                    "name": "vers:unknown/v.1.4.0",
                                    "product_id": "CSAFPID-4429452"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v0.9.0",
                                "product": {
                                    "name": "vers:unknown/v0.9.0",
                                    "product_id": "CSAFPID-4429453"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.106",
                                "product": {
                                    "name": "vers:unknown/v1.0.106",
                                    "product_id": "CSAFPID-4429454"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.115",
                                "product": {
                                    "name": "vers:unknown/v1.0.115",
                                    "product_id": "CSAFPID-4429455"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.116",
                                "product": {
                                    "name": "vers:unknown/v1.0.116",
                                    "product_id": "CSAFPID-4429456"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.119",
                                "product": {
                                    "name": "vers:unknown/v1.0.119",
                                    "product_id": "CSAFPID-4429457"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.138",
                                "product": {
                                    "name": "vers:unknown/v1.0.138",
                                    "product_id": "CSAFPID-4429458"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.150",
                                "product": {
                                    "name": "vers:unknown/v1.0.150",
                                    "product_id": "CSAFPID-4429459"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.178",
                                "product": {
                                    "name": "vers:unknown/v1.0.178",
                                    "product_id": "CSAFPID-4429460"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.0.272",
                                "product": {
                                    "name": "vers:unknown/v1.0.272",
                                    "product_id": "CSAFPID-4429461"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.60",
                                "product": {
                                    "name": "vers:unknown/v1.2.60",
                                    "product_id": "CSAFPID-4429462"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.61",
                                "product": {
                                    "name": "vers:unknown/v1.2.61",
                                    "product_id": "CSAFPID-4429463"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.0",
                                "product": {
                                    "name": "vers:unknown/v1.3.0",
                                    "product_id": "CSAFPID-4429464"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.1",
                                "product": {
                                    "name": "vers:unknown/v1.3.1",
                                    "product_id": "CSAFPID-4429465"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.2",
                                "product": {
                                    "name": "vers:unknown/v1.3.2",
                                    "product_id": "CSAFPID-4429466"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.3",
                                "product": {
                                    "name": "vers:unknown/v1.3.3",
                                    "product_id": "CSAFPID-4429467"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.4",
                                "product": {
                                    "name": "vers:unknown/v1.3.4",
                                    "product_id": "CSAFPID-4429468"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.5",
                                "product": {
                                    "name": "vers:unknown/v1.3.5",
                                    "product_id": "CSAFPID-4429469"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.4.0",
                                "product": {
                                    "name": "vers:unknown/v1.4.0",
                                    "product_id": "CSAFPID-4429470"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.4.1",
                                "product": {
                                    "name": "vers:unknown/v1.4.1",
                                    "product_id": "CSAFPID-4429471"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.0",
                                "product": {
                                    "name": "vers:unknown/v1.5.0",
                                    "product_id": "CSAFPID-4429472"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.1",
                                "product": {
                                    "name": "vers:unknown/v1.5.1",
                                    "product_id": "CSAFPID-4429473"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.2",
                                "product": {
                                    "name": "vers:unknown/v1.5.2",
                                    "product_id": "CSAFPID-4429474"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.3",
                                "product": {
                                    "name": "vers:unknown/v1.5.3",
                                    "product_id": "CSAFPID-4429475"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2,1,0",
                                "product": {
                                    "name": "vers:unknown/v2,1,0",
                                    "product_id": "CSAFPID-4429476"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.0.0",
                                "product": {
                                    "name": "vers:unknown/v2.0.0",
                                    "product_id": "CSAFPID-4429477"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.1.1",
                                "product": {
                                    "name": "vers:unknown/v2.1.1",
                                    "product_id": "CSAFPID-4429478"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.2.0",
                                "product": {
                                    "name": "vers:unknown/v2.2.0",
                                    "product_id": "CSAFPID-4429479"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.3.0",
                                "product": {
                                    "name": "vers:unknown/v2.3.0",
                                    "product_id": "CSAFPID-4429480"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.3.1",
                                "product": {
                                    "name": "vers:unknown/v2.3.1",
                                    "product_id": "CSAFPID-4429481"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.4.0",
                                "product": {
                                    "name": "vers:unknown/v2.4.0",
                                    "product_id": "CSAFPID-4429482"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.5.0",
                                "product": {
                                    "name": "vers:unknown/v2.5.0",
                                    "product_id": "CSAFPID-4429483"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.5.1",
                                "product": {
                                    "name": "vers:unknown/v2.5.1",
                                    "product_id": "CSAFPID-4429484"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v2.5.2",
                                "product": {
                                    "name": "vers:unknown/v2.5.2",
                                    "product_id": "CSAFPID-4429485"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.0",
                                "product": {
                                    "name": "vers:unknown/v3.0.0",
                                    "product_id": "CSAFPID-4429486"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.1",
                                "product": {
                                    "name": "vers:unknown/v3.0.1",
                                    "product_id": "CSAFPID-5567486"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.2",
                                "product": {
                                    "name": "vers:unknown/v3.0.2",
                                    "product_id": "CSAFPID-5567487"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.3",
                                "product": {
                                    "name": "vers:unknown/v3.0.3",
                                    "product_id": "CSAFPID-5567488"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v3.0.4",
                                "product": {
                                    "name": "vers:unknown/v3.0.4",
                                    "product_id": "CSAFPID-5567489"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v4.0.0",
                                "product": {
                                    "name": "vers:unknown/v4.0.0",
                                    "product_id": "CSAFPID-5701931"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v4.1.0",
                                "product": {
                                    "name": "vers:unknown/v4.1.0",
                                    "product_id": "CSAFPID-5701932"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "jspdf"
                    }
                ],
                "category": "vendor",
                "name": "mrrio"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2026-25755",
            "cwe": {
                "id": "CWE-116",
                "name": "Improper Encoding or Escaping of Output"
            },
            "notes": [
                {
                    "category": "description",
                    "text": "jsPDF is a library to generate PDFs in JavaScript. Prior to 4.2.0, user control of the argument of the `addJS` method allows an attacker to inject arbitrary PDF objects into the generated document. By crafting a payload that escapes the JavaScript string delimiter, an attacker can execute malicious actions or alter the document structure, impacting any user who opens the generated PDF. The vulnerability has been fixed in jspdf@4.2.0. As a workaround, escape parentheses in user-provided JavaScript code before passing them to the `addJS` method.",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2026-25755"
                },
                {
                    "category": "description",
                    "text": "jsPDF is a library to generate PDFs in JavaScript. Prior to 4.2.0, user control of the argument of the `addJS` method allows an attacker to inject arbitrary PDF objects into the generated document. By crafting a payload that escapes the JavaScript string delimiter, an attacker can execute malicious actions or alter the document structure, impacting any user who opens the generated PDF. The vulnerability has been fixed in jspdf@4.2.0. As a workaround, escape parentheses in user-provided JavaScript code before passing them to the `addJS` method.",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2026-25755"
                },
                {
                    "category": "description",
                    "text": "### Impact\n\nUser control of the argument of the `addJS` method allows an attacker to inject arbitrary PDF objects into the generated document. By crafting a payload that escapes the JavaScript string delimiter, an attacker can execute malicious actions or alter the document structure, impacting any user who opens the generated PDF.\n\n```js\nimport { jsPDF } from \"jspdf\";\nconst doc = new jsPDF();\n// Payload:\n// 1. ) closes the JS string.\n// 2. > closes the current dictionary.\n// 3. /AA ... injects an \"Additional Action\" that executes on focus/open.\nconst maliciousPayload = \"console.log('test');) >> /AA << /O << /S /JavaScript /JS (app.alert('Hacked!')) >> >>\";\n\ndoc.addJS(maliciousPayload);\ndoc.save(\"vulnerable.pdf\");\n```\n\n### Patches\nThe vulnerability has been fixed in jspdf@4.2.0.\n\n### Workarounds\nEscape parentheses in user-provided JavaScript code before passing them to the `addJS` method.\n### References\nhttps://github.com/ZeroXJacks/CVEs/blob/main/2026/CVE-2026-25755.md",
                    "title": "github - https://github.com/advisories/GHSA-9vjf-qc39-jprp"
                },
                {
                    "category": "description",
                    "text": "### Impact\n\nUser control of the argument of the `addJS` method allows an attacker to inject arbitrary PDF objects into the generated document. By crafting a payload that escapes the JavaScript string delimiter, an attacker can execute malicious actions or alter the document structure, impacting any user who opens the generated PDF.\n\n```js\nimport { jsPDF } from \"jspdf\";\nconst doc = new jsPDF();\n// Payload:\n// 1. ) closes the JS string.\n// 2. > closes the current dictionary.\n// 3. /AA ... injects an \"Additional Action\" that executes on focus/open.\nconst maliciousPayload = \"console.log('test');) >> /AA << /O << /S /JavaScript /JS (app.alert('Hacked!')) >> >>\";\n\ndoc.addJS(maliciousPayload);\ndoc.save(\"vulnerable.pdf\");\n```\n\n### Patches\nThe vulnerability has been fixed in jspdf@4.2.0.\n\n### Workarounds\nEscape parentheses in user-provided JavaScript code before passing them to the `addJS` method.\n### References\nhttps://github.com/ZeroXJacks/CVEs/blob/main/2026/CVE-2026-25755.md",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/npm%2FGHSA-9vjf-qc39-jprp.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in jsPDF. The addJS method accepts user input without proper sanitization, allowing an attacker to inject arbitrary PDF objects into the document. A specially crafted payload that escapes the JavaScript string delimiter can execute malicious actions or alter the document structure, resulting in arbitrary code execution when a user opens a PDF with a viewer that supports embedded scripts.\nTo exploit this flaw, an attacker must be able to supply a specially crafted payload to the application using the addJS method and convince a user to open the generated PDF document with a viewer that supports embedded scripts. Due to these reasons, this vulnerability has been rated with an important severity.",
                    "title": "redhat - https://access.redhat.com/security/cve/CVE-2026-25755"
                },
                {
                    "category": "description",
                    "text": "jsPDF is a library to generate PDFs in JavaScript. Prior to 4.2.0, user control of the argument of the `addJS` method allows an attacker to inject arbitrary PDF objects into the generated document. By crafting a payload that escapes the JavaScript string delimiter, an attacker can execute malicious actions or alter the document structure, impacting any user who opens the generated PDF. The vulnerability has been fixed in jspdf@4.2.0. As a workaround, escape parentheses in user-provided JavaScript code before passing them to the `addJS` method.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-25755.json?alt=media"
                },
                {
                    "category": "other",
                    "text": "0.00036",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "4.6",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "There is product data available from source Redhat",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "There is exploit data available from source Nvd, Is related to (a version of) an uncommon product",
                    "title": "NCSC Score top decreasing factors"
                },
                {
                    "category": "details",
                    "text": "Severity: 3\n",
                    "title": "Vendor assessment"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-5634391",
                    "CSAFPID-5637494",
                    "CSAFPID-1441083",
                    "CSAFPID-1441085",
                    "CSAFPID-3731537",
                    "CSAFPID-3731538",
                    "CSAFPID-3731539",
                    "CSAFPID-3731540",
                    "CSAFPID-3731541",
                    "CSAFPID-3731542",
                    "CSAFPID-3731543",
                    "CSAFPID-3731544",
                    "CSAFPID-3731545",
                    "CSAFPID-3731546",
                    "CSAFPID-3731547",
                    "CSAFPID-3731548",
                    "CSAFPID-3731549",
                    "CSAFPID-3731550",
                    "CSAFPID-3731551",
                    "CSAFPID-3731552",
                    "CSAFPID-3731553",
                    "CSAFPID-3731554",
                    "CSAFPID-3731555",
                    "CSAFPID-3731556",
                    "CSAFPID-3731557",
                    "CSAFPID-3731558",
                    "CSAFPID-3731559",
                    "CSAFPID-3731560",
                    "CSAFPID-3731561",
                    "CSAFPID-3731562",
                    "CSAFPID-3731563",
                    "CSAFPID-3731564",
                    "CSAFPID-3731565",
                    "CSAFPID-3731566",
                    "CSAFPID-3731567",
                    "CSAFPID-3731568",
                    "CSAFPID-3731569",
                    "CSAFPID-3731570",
                    "CSAFPID-3731571",
                    "CSAFPID-3731572",
                    "CSAFPID-3731573",
                    "CSAFPID-3731574",
                    "CSAFPID-5335932",
                    "CSAFPID-5335933",
                    "CSAFPID-5335934",
                    "CSAFPID-5502987",
                    "CSAFPID-5701933",
                    "CSAFPID-4429450",
                    "CSAFPID-4429451",
                    "CSAFPID-4429452",
                    "CSAFPID-4429453",
                    "CSAFPID-4429454",
                    "CSAFPID-4429455",
                    "CSAFPID-4429456",
                    "CSAFPID-4429457",
                    "CSAFPID-4429458",
                    "CSAFPID-4429459",
                    "CSAFPID-4429460",
                    "CSAFPID-4429461",
                    "CSAFPID-4429462",
                    "CSAFPID-4429463",
                    "CSAFPID-4429464",
                    "CSAFPID-4429465",
                    "CSAFPID-4429466",
                    "CSAFPID-4429467",
                    "CSAFPID-4429468",
                    "CSAFPID-4429469",
                    "CSAFPID-4429470",
                    "CSAFPID-4429471",
                    "CSAFPID-4429472",
                    "CSAFPID-4429473",
                    "CSAFPID-4429474",
                    "CSAFPID-4429475",
                    "CSAFPID-4429476",
                    "CSAFPID-4429477",
                    "CSAFPID-4429478",
                    "CSAFPID-4429479",
                    "CSAFPID-4429480",
                    "CSAFPID-4429481",
                    "CSAFPID-4429482",
                    "CSAFPID-4429483",
                    "CSAFPID-4429484",
                    "CSAFPID-4429485",
                    "CSAFPID-4429486",
                    "CSAFPID-5567486",
                    "CSAFPID-5567487",
                    "CSAFPID-5567488",
                    "CSAFPID-5567489",
                    "CSAFPID-5701931",
                    "CSAFPID-5701932"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-25755"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/25xxx/CVE-2026-25755.json"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25755"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-25755"
                },
                {
                    "category": "external",
                    "summary": "Source - github",
                    "url": "https://github.com/advisories/GHSA-9vjf-qc39-jprp"
                },
                {
                    "category": "external",
                    "summary": "Source raw - github",
                    "url": "https://api.github.com/advisories/GHSA-9vjf-qc39-jprp"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/npm%2FGHSA-9vjf-qc39-jprp.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-25755"
                },
                {
                    "category": "external",
                    "summary": "Source raw - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-25755.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2026-25755"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-25755.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; nvd; osv; redhat",
                    "url": "https://github.com/parallax/jsPDF/security/advisories/GHSA-9vjf-qc39-jprp"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; nvd; osv; redhat",
                    "url": "https://github.com/parallax/jsPDF/commit/56b46d45b052346f5995b005a34af5dcdddd5437"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; nvd; osv; redhat",
                    "url": "https://github.com/ZeroXJacks/CVEs/blob/main/2026/CVE-2026-25755.md"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; nvd; osv; redhat",
                    "url": "https://github.com/parallax/jsPDF/releases/tag/v4.2.0"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; osv; redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25755"
                },
                {
                    "category": "external",
                    "summary": "Reference - github",
                    "url": "https://github.com/advisories/GHSA-9vjf-qc39-jprp"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-25755"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/25xxx/CVE-2026-25755.json"
                }
            ],
            "remediations": [
                {
                    "category": "mitigation",
                    "details": "To mitigate this vulnerability, sanitize the user-provided JavaScript code before passing it to the addJS method by strictly escaping backslashes and parentheses.",
                    "product_ids": [
                        "CSAFPID-1441083",
                        "CSAFPID-1441085"
                    ]
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N",
                        "baseScore": 8.1,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1441083",
                        "CSAFPID-1441085",
                        "CSAFPID-3731537",
                        "CSAFPID-3731538",
                        "CSAFPID-3731539",
                        "CSAFPID-3731540",
                        "CSAFPID-3731541",
                        "CSAFPID-3731542",
                        "CSAFPID-3731543",
                        "CSAFPID-3731544",
                        "CSAFPID-3731545",
                        "CSAFPID-3731546",
                        "CSAFPID-3731547",
                        "CSAFPID-3731548",
                        "CSAFPID-3731549",
                        "CSAFPID-3731550",
                        "CSAFPID-3731551",
                        "CSAFPID-3731552",
                        "CSAFPID-3731553",
                        "CSAFPID-3731554",
                        "CSAFPID-3731555",
                        "CSAFPID-3731556",
                        "CSAFPID-3731557",
                        "CSAFPID-3731558",
                        "CSAFPID-3731559",
                        "CSAFPID-3731560",
                        "CSAFPID-3731561",
                        "CSAFPID-3731562",
                        "CSAFPID-3731563",
                        "CSAFPID-3731564",
                        "CSAFPID-3731565",
                        "CSAFPID-3731566",
                        "CSAFPID-3731567",
                        "CSAFPID-3731568",
                        "CSAFPID-3731569",
                        "CSAFPID-3731570",
                        "CSAFPID-3731571",
                        "CSAFPID-3731572",
                        "CSAFPID-3731573",
                        "CSAFPID-3731574",
                        "CSAFPID-4429450",
                        "CSAFPID-4429451",
                        "CSAFPID-4429452",
                        "CSAFPID-4429453",
                        "CSAFPID-4429454",
                        "CSAFPID-4429455",
                        "CSAFPID-4429456",
                        "CSAFPID-4429457",
                        "CSAFPID-4429458",
                        "CSAFPID-4429459",
                        "CSAFPID-4429460",
                        "CSAFPID-4429461",
                        "CSAFPID-4429462",
                        "CSAFPID-4429463",
                        "CSAFPID-4429464",
                        "CSAFPID-4429465",
                        "CSAFPID-4429466",
                        "CSAFPID-4429467",
                        "CSAFPID-4429468",
                        "CSAFPID-4429469",
                        "CSAFPID-4429470",
                        "CSAFPID-4429471",
                        "CSAFPID-4429472",
                        "CSAFPID-4429473",
                        "CSAFPID-4429474",
                        "CSAFPID-4429475",
                        "CSAFPID-4429476",
                        "CSAFPID-4429477",
                        "CSAFPID-4429478",
                        "CSAFPID-4429479",
                        "CSAFPID-4429480",
                        "CSAFPID-4429481",
                        "CSAFPID-4429482",
                        "CSAFPID-4429483",
                        "CSAFPID-4429484",
                        "CSAFPID-4429485",
                        "CSAFPID-4429486",
                        "CSAFPID-5335932",
                        "CSAFPID-5335933",
                        "CSAFPID-5335934",
                        "CSAFPID-5502987",
                        "CSAFPID-5567486",
                        "CSAFPID-5567487",
                        "CSAFPID-5567488",
                        "CSAFPID-5567489",
                        "CSAFPID-5634391",
                        "CSAFPID-5637494",
                        "CSAFPID-5701931",
                        "CSAFPID-5701932",
                        "CSAFPID-5701933"
                    ]
                }
            ],
            "title": "CVE-2026-25755"
        }
    ]
}