Количество 7
Количество 7
CVE-2026-24688
pypdf is a free and open-source pure-python PDF library. An attacker who uses an infinite loop vulnerability that is present in versions prior to 6.6.2 can craft a PDF which leads to an infinite loop. This requires accessing the outlines/bookmarks. This has been fixed in pypdf 6.6.2. If projects cannot upgrade yet, consider applying the changes from PR #3610 manually.
CVE-2026-24688
pypdf is a free and open-source pure-python PDF library. An attacker who uses an infinite loop vulnerability that is present in versions prior to 6.6.2 can craft a PDF which leads to an infinite loop. This requires accessing the outlines/bookmarks. This has been fixed in pypdf 6.6.2. If projects cannot upgrade yet, consider applying the changes from PR #3610 manually.
CVE-2026-24688
pypdf is a free and open-source pure-python PDF library. An attacker who uses an infinite loop vulnerability that is present in versions prior to 6.6.2 can craft a PDF which leads to an infinite loop. This requires accessing the outlines/bookmarks. This has been fixed in pypdf 6.6.2. If projects cannot upgrade yet, consider applying the changes from PR #3610 manually.
CVE-2026-24688
pypdf is a free and open-source pure-python PDF library. An attacker w ...
GHSA-2q4j-m29v-hq73
pypdf has possible Infinite Loop when processing outlines/bookmarks
BDU:2026-03618
Уязвимость библиотеки Python для работы с PDF файлами PyPDF, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20260216-73-0048
Уязвимость python-PyPDF2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-24688 pypdf is a free and open-source pure-python PDF library. An attacker who uses an infinite loop vulnerability that is present in versions prior to 6.6.2 can craft a PDF which leads to an infinite loop. This requires accessing the outlines/bookmarks. This has been fixed in pypdf 6.6.2. If projects cannot upgrade yet, consider applying the changes from PR #3610 manually. | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
CVE-2026-24688 pypdf is a free and open-source pure-python PDF library. An attacker who uses an infinite loop vulnerability that is present in versions prior to 6.6.2 can craft a PDF which leads to an infinite loop. This requires accessing the outlines/bookmarks. This has been fixed in pypdf 6.6.2. If projects cannot upgrade yet, consider applying the changes from PR #3610 manually. | CVSS3: 5.3 | 0% Низкий | 2 месяца назад | |
CVE-2026-24688 pypdf is a free and open-source pure-python PDF library. An attacker who uses an infinite loop vulnerability that is present in versions prior to 6.6.2 can craft a PDF which leads to an infinite loop. This requires accessing the outlines/bookmarks. This has been fixed in pypdf 6.6.2. If projects cannot upgrade yet, consider applying the changes from PR #3610 manually. | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
CVE-2026-24688 pypdf is a free and open-source pure-python PDF library. An attacker w ... | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
GHSA-2q4j-m29v-hq73 pypdf has possible Infinite Loop when processing outlines/bookmarks | 0% Низкий | 2 месяца назад | ||
BDU:2026-03618 Уязвимость библиотеки Python для работы с PDF файлами PyPDF, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 4 | 0% Низкий | 2 месяца назад | |
ROS-20260216-73-0048 Уязвимость python-PyPDF2 | CVSS3: 4 | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу