CVE-2026-103000
- EPSS 0.3%
- Veröffentlicht 30.09.2026 20:13:00
- Zuletzt bearbeitet 05.10.2026 15:03:11
pypdf is a free and open-source pure-python PDF library. Prior to 6.19.0, a crafted PDF can provide unusually large alphabetical page-label values that cause pypdf/_page_labels.py to generate strings beyond a reasonable page-label length when an appl...
CVE-2026-102999
- EPSS 0.3%
- Veröffentlicht 30.09.2026 20:10:38
- Zuletzt bearbeitet 05.10.2026 15:04:55
pypdf is a free and open-source pure-python PDF library. Prior to 6.19.0, a crafted PDF containing many embedded files can cause the dictionary-based attachments API in pypdf/_doc_common.py to reparse the full attachment list for each content lookup,...
CVE-2026-102998
- EPSS 0.3%
- Veröffentlicht 30.09.2026 20:09:13
- Zuletzt bearbeitet 05.10.2026 15:05:55
pypdf is a free and open-source pure-python PDF library. Prior to 6.19.0, a crafted PDF with form field values can cause pypdf/generic/_appearance_stream.py appearance-stream generation to repeat invariant selection-data work inside a loop when an ap...
CVE-2026-102997
- EPSS 0.3%
- Veröffentlicht 30.09.2026 20:05:51
- Zuletzt bearbeitet 05.10.2026 15:07:04
pypdf is a free and open-source pure-python PDF library. Prior to 6.18.1, a crafted PDF containing a partially malformed /FlateDecode stream with padded data can force pypdf/filters.py to use inefficient byte-by-byte decompression while the earlier r...
CVE-2026-102996
- EPSS 0.3%
- Veröffentlicht 30.09.2026 20:03:55
- Zuletzt bearbeitet 05.10.2026 15:13:17
pypdf is a free and open-source pure-python PDF library. Prior to 6.18.1, a crafted PDF can provide a TrueType or Type1 simple font with an unusually large /Widths array, causing pypdf/_font.py Font._collect_tt_t1_character_widths to process entries ...
CVE-2026-102995
- EPSS 0.3%
- Veröffentlicht 30.09.2026 20:01:43
- Zuletzt bearbeitet 05.10.2026 15:23:15
pypdf is a free and open-source pure-python PDF library. Prior to 6.18.1, a crafted PDF can place unusually large source-code or destination-string tokens in a font /ToUnicode mapping, causing pypdf/_cmap.py parse_bfchar to decode and retain oversize...
CVE-2026-102994
- EPSS 0.3%
- Veröffentlicht 30.09.2026 19:57:37
- Zuletzt bearbeitet 05.10.2026 15:24:04
pypdf is a free and open-source pure-python PDF library. Prior to 6.18.0, a crafted PDF containing indirect-object identifiers or generation-number tokens that continue for a long time without whitespace can cause pypdf/_reader.py and pypdf/generic/_...
CVE-2026-102993
- EPSS 0.3%
- Veröffentlicht 30.09.2026 19:55:52
- Zuletzt bearbeitet 02.10.2026 17:17:01
pypdf is a free and open-source pure-python PDF library. Prior to 6.17.0, a crafted PDF can provide unusually large Roman page-label values that cause pypdf/_page_labels.py to generate excessively large numeral strings when an application retrieves d...
CVE-2026-84311
- EPSS 0.14%
- Veröffentlicht 01.09.2026 20:03:13
- Zuletzt bearbeitet 05.10.2026 17:42:45
pypdf is a free and open-source pure-python PDF library. Prior to 6.16.1, an attacker can craft a PDF that causes pypdf/_page.py PageObject._extract_text and PageObject.extract_xform_text to traverse a directed acyclic graph of reused form XObjects i...
CVE-2026-84310
- EPSS 0.14%
- Veröffentlicht 01.09.2026 20:00:59
- Zuletzt bearbeitet 05.10.2026 17:42:28
pypdf is a free and open-source pure-python PDF library. Prior to 6.16.1, an attacker can craft a PDF that causes pypdf/_doc_common.py _get_outline to consume long runtimes and large amounts of memory when retrieving document outlines with large numb...