The package pdfkit from 0.0.0 are vulnerable to Command Injection where the URL is not properly sanitized.