CRITICAL
simcy_creative
CVE published 2026-06-04
CVE-2019-25729
CVE-2019-25729 is a critical server-side template injection vulnerability in PDF Signer 3.0. This vulnerability allows unauthenticated attackers to execute PHP commands through the CSRF-TOKEN cookie parameter, potentially leading to arbitrary code execution and sensitive information disclosure.