© 2025-2026 PySpect
First version without a known vulnerability: 3.6.13
ReportLab vulnerable to remote code execution via paraparser
Fixed in: 3.5.31
Reportlab vulnerable to remote code execution
Fixed in: 3.6.13
XML Injection in ReportLab
Fixed in: 3.5.28
Server-side Request Forgery (SSRF) via img tags in reportlab
Fixed in: 3.5.55