Skip to content

wkhtmltopdf depends on insecure version of qtwebkit #1873

@antifuchs

Description

@antifuchs

I recently tried updating my nixpkgs to the 22.11 release, and that has failed to build with a pretty scary-sounding security warning:

Known issues:

Looks like joex uses wkhtmltopdf, which in turn depends on qtwebkit from qt5, and that hasn't been updated in several years. It also seems that wkhtmltopdf isn't maintained either: wkhtmltopdf/wkhtmltopdf#5160.

Overall, this is a pretty unfortunate situation, especially because I know of no good alternative tool off-hand.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions