Report a Vulnerability

If you believe you have found a security vulnerability in iText, please submit that report to us as soon as possible through email: [email protected] or by using the form on the right. 

Please include as much detail as you can; this will help us understand the issue and fix it quickly. 

If you do not receive a response in 2 business days, please follow up as we may not have received your message. iText follows the procedure of Coordinated Vulnerability Disclosure (CVD) and, to protect the ecosystem, we request that those reporting do the same. 

For additional information on the CVD process, please read the following, which is Microsoft's definition of how the process works:

Under the principle of Coordinated Vulnerability Disclosure, researchers disclose newly discovered vulnerabilities in hardware, software, and services directly to the vendors of the affected product; to a national CERT or another coordinator who will report to the vendor privately; or to a private service that will likewise report to the vendor privately. The researcher allows the vendor the opportunity to diagnose and offer thoroughly tested updates, workarounds, or other corrective measures before any party discloses detailed vulnerability or exploit information to the public. 

The vendor coordinates with the researcher throughout the vulnerability investigation and provides the researcher with updates on case progress. Upon release of an update, the vendor may recognize the finder for the research and privately report the issue. However, if attacks are underway in the wild, and the vendor is still working on the update, then both the researcher and vendor work together as closely as possible to provide early public vulnerability disclosure to protect customers. The aim is to provide timely and consistent guidance to customers to help them protect themselves.

We appreciate you reporting the vulnerability and look forward to speaking with you soon. 

2021_Global_Report_a_Vulnerability

Toggle dropdown
Toggle dropdown
Toggle dropdown
Contact

Still have questions? 

We're happy to answer your questions. Reach out to us and we'll get back to you shortly.

Contact us
Stay updated

Join 11,000+ subscribers and become an iText PDF expert by staying up to date with our new products, updates, tips, technical solutions and happenings.

Subscribe Now