A vulnerability categorized as problematic has been discovered in Dompdf up to 3.15. This impacts the function validateLocalUri of the component Chroot. Executing a manipulation of the argument chrootPath can lead to improper input validation.

This vulnerability is handled as CVE-2026-55554. The attack can be executed remotely. There is not any exploit available.

It is advisable to upgrade the affected component.