โ† All reports

The pypdf library has vulnerabilities that allow attackers to exploit PDF files and cause long runtimes or RAM exhaustion.

CybersecurityTechnologyConflictApr 23, 2026score 0.173 posts ยท 0 replies across 1 instances
This thread discusses three vulnerabilities in the pypdf library, all of which allow attackers to exploit PDF files to cause long runtimes or RAM exhaustion. These vulnerabilities affect versions prior to 6.10.2 and require specific conditions to be met.

Claims

The pypdf library has vulnerabilities that allow attackers to exploit PDF files and cause long runtimes or RAM exhaustion.
Parent: Software VulnerabilitiesEntity: pypdf libraryImpact: negativeDate: Apr 23, 2026Target: The pypdf library's security

Source posts

@[email protected]
๐Ÿšจ EUVD-2026-25112 ๐Ÿ“Š Score: 4.8/10 (CVSS v3.1) ๐Ÿ“ฆ Product: pypdf ๐Ÿข Vendor: py-pdf ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ pypdf is a free and open-source pure-python PDF library. An attacker who uses a vulnerability present in versions prior to 6.10.2 can craft a PDF which leads to the RAM being exhausted. This requires accessing a stream compressed using `/FlateDecode` with a `/P... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25112 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25114 ๐Ÿ“Š Score: 4.8/10 (CVSS v3.1) ๐Ÿ“ฆ Product: pypdf ๐Ÿข Vendor: py-pdf ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ pypdf is a free and open-source pure-python PDF library. An attacker who uses a vulnerability present in versions prior to 6.10.2 can craft a PDF which leads to long runtimes. This requires loading a PDF with a large trailer `/Size` value in incremental mode. T... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25114 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25116 ๐Ÿ“Š Score: 4.8/10 (CVSS v3.1) ๐Ÿ“ฆ Product: pypdf ๐Ÿข Vendor: py-pdf ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ pypdf is a free and open-source pure-python PDF library. An attacker who uses a vulnerability present in versions prior to 6.10.2 can craft a PDF which leads to the RAM being exhausted. This requires accessing an image using `/FlateDecode` with large size value... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25116 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability