3 ms·
Same here. No (F)OSS licenses to be found on the page itself. Sus. Perhaps it is simply injecting remote root vulnerabilities into the PDF's.
by coretx 2y ago
Same here. No (F)OSS licenses to be found on the page itself. Sus.
Perhaps it is simply injecting remote root vulnerabilities into the PDF's.
- aspenmayer 2y agoI hope those are FOSS remote root PDF vulns!
- coretx 2y agoIf something is turing complete, don't trust/execute it until you have verified where it comes from, who is behind it and what it does. Here you have what Adobe has to say about PDF's: https://www.adobe.com/acrobat/resources/can-pdfs-contain-viruses.html https://www.adobe.com/acrobat/resources/can-pdfs-contain-vir...
- sanusihassan 2y agothe web app i.e the front end part is next.js and typescript mostly, the landing page is built using astro.js, and the back end is heavily python, flask and some javascript for web-to-pdf and markdown-to-pdf, the rest is mostly python
- deathemperor 2y agojust curious: what do you use to convert web pages to pdf?
- cuu508 2y agoNot op, but I've had good experience with WeasyPrint. I use it for generating PDF invoices: I create a HTML invoice from a template, WeasyPrint turns it into a PDF document. It handles CSS, images, custom fonts, etc. A neat trick to convert HTML to PDF in a browser environment is to open a new browser window, load the HTML in it, and call print() on it, like here: https://stackoverflow.com/a/33890644/5821 https://stackoverflow.com/a/33890644/5821. May be OK for an internal tool.
- sanusihassan 2y agopuppeteer