Количество 2
Количество 2
CVE-2026-40980
3 месяца назад
In Spring AI, a malicious PDF file can be crafted that triggers the allocation of unreasonable amounts of memory when handled by `ForkPDFLayoutTextStripper`. Affected versions: Spring AI: 1.0.0 - 1.0.5 (fixed in 1.0.6), 1.1.0 - 1.1.4 (fixed in 1.1.5)
CVSS3: 6.5
EPSS: Низкий
GHSA-26gg-9gv2-v27j
3 месяца назад
Spring AI Vulnerable to OOM by attacker-controlled PDF
CVSS3: 6.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-40980 In Spring AI, a malicious PDF file can be crafted that triggers the allocation of unreasonable amounts of memory when handled by `ForkPDFLayoutTextStripper`. Affected versions: Spring AI: 1.0.0 - 1.0.5 (fixed in 1.0.6), 1.1.0 - 1.1.4 (fixed in 1.1.5) | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
GHSA-26gg-9gv2-v27j Spring AI Vulnerable to OOM by attacker-controlled PDF | CVSS3: 6.5 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу
20