VendorsPypdf Projectpypdfany version
Vulnerabilities

Pypdf Project Pypdf any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

37CVEs
CVE-2026-59936
pypdf: Possible infinite loop for not terminated inline images
Published 2026-07-08 · Analyzed
8.7EPSS 0.006
CVE-2026-59935
pypdf: Possible infinite loop for not terminated inline images (ASCII85 and ASCIIHex filter)
Published 2026-07-08 · Analyzed
8.7EPSS 0.006
CVE-2026-59937
pypdf: Possible long runtimes for repeated malformed cross-reference entries
Published 2026-07-08 · Analyzed
7.5EPSS 0.006
CVE-2026-27888
pypdf: Manipulated FlateDecode XFA streams can exhaust RAM
Published 2026-02-26 · Analyzed
7.5EPSS 0.006
CVE-2026-27628
pypdf has a possible infinite loop when loading circular /Prev entries in cross-reference streams
Published 2026-02-25 · Modified
7.5EPSS 0.006
CVE-2026-33699
pypdf: Possible infinite loop during recovery attempts in DictionaryObject.read_from_stream
Published 2026-03-26 · Analyzed
7.5EPSS 0.006
CVE-2025-55197
pypdf's Manipulated FlateDecode streams can exhaust RAM
Published 2025-08-13 · Analyzed
7.5EPSS 0.005
CVE-2025-62707
pypdf affected by possible infinite loop when reading DCT inline images without EOF marker
Published 2025-10-22 · Analyzed
7.5EPSS 0.004
CVE-2025-62708
pypdf manipulated LZWDecode streams can exhaust RAM
Published 2025-10-22 · Analyzed
7.5EPSS 0.004
CVE-2026-59938
pypdf: Possible large memory usage for wrong image dimensions
Published 2026-07-08 · Analyzed
6.9EPSS 0.005
CVE-2026-41168
pypdf has possible long runtimes for wrong size values in cross-reference and object streams
Published 2026-04-22 · Analyzed
6.9EPSS 0.005
CVE-2026-40260
pypdf: Manipulated XMP metadata entity declarations can exhaust RAM
Published 2026-04-16 · Analyzed
6.9EPSS 0.005
CVE-2026-28804
pypdf: Inefficient decoding of ASCIIHexDecode streams
Published 2026-03-06 · Analyzed
6.9EPSS 0.005
CVE-2026-28351
Manipulated RunLengthDecode streams can exhaust RAM
Published 2026-02-27 · Analyzed
6.9EPSS 0.005
CVE-2026-57204
pypdf: Missing stream length values ignore defined limits
Published 2026-06-30 · Analyzed
6.9EPSS 0.004
CVE-2026-27025
pypdf has possible long runtimes/large memory usage for large /ToUnicode streams
Published 2026-02-20 · Analyzed
6.9EPSS 0.002
CVE-2026-27024
pypdf has a possible infinite loop when processing TreeObject
Published 2026-02-20 · Analyzed
6.9EPSS 0.002
CVE-2026-27026
pypdf possibly has long runtimes for malformed FlateDecode streams
Published 2026-02-20 · Analyzed
6.9EPSS 0.002
CVE-2026-48735
pypdf: Manipulated XMP metadata streams can exhaust RAM
Published 2026-05-28 · Analyzed
6.9EPSS 0.002
CVE-2026-54531
pypdf: Possible infinite loop when processing outlines/bookmarks in writer
Published 2026-06-22 · Analyzed
6.9EPSS 0.002
CVE-2026-49461
pypdf: Possible large memory usage for form XObjects during text extraction
Published 2026-06-22 · Analyzed
6.9EPSS 0.002
CVE-2026-54530
pypdf: Possible infinite loop when retrieving fonts for layout-mode text extraction
Published 2026-06-22 · Analyzed
6.9EPSS 0.002
CVE-2026-54651
pypdf: Possible infinite loop when processing threads/articles in writer
Published 2026-06-22 · Analyzed
6.9EPSS 0.002
CVE-2026-31826
pypdf: manipulated stream length values can exhaust RAM
Published 2026-03-10 · Analyzed
6.8EPSS 0.002
CVE-2023-36810
Quadratic runtime with malformed PDF missing xref marker in pypdf
Published 2023-06-30 · Modified
6.5EPSS 0.006
CVE-2026-41312
pypdf: Manipulated FlateDecode predictor parameters can exhaust RAM
Published 2026-04-22 · Analyzed
6.5EPSS 0.004
CVE-2026-41314
pypdf: Manipulated FlateDecode image dimensions can exhaust RAM
Published 2026-04-22 · Analyzed
6.5EPSS 0.004
CVE-2026-41313
pypdf: Possible long runtimes for wrong size values in incremental mode
Published 2026-04-22 · Analyzed
6.5EPSS 0.004
CVE-2026-33123
pypdf has inefficient decoding of array-based streams
Published 2026-03-20 · Analyzed
6.5EPSS 0.004
CVE-2023-36464
Infinite Loop when a comment isn't followed by a character in pypdf
Published 2023-06-27 · Modified
6.2EPSS 0.004
CVE-2023-46250
pypdf possible Infinite Loop when PdfWriter(clone_from) is used with a PDF
Published 2023-10-31 · Modified
5.5EPSS 0.002
CVE-2026-48155
pypdf: Possible large memory usage for large offsets for layout mode text
Published 2026-05-28 · Analyzed
5.5EPSS 0.002
CVE-2026-22690
pypdf has possible long runtimes for missing /Root object with large /Size values
Published 2026-01-10 · Analyzed
5.3EPSS 0.004
CVE-2026-22691
pypdf has possible long runtimes for malformed startxref
Published 2026-01-10 · Analyzed
5.3EPSS 0.004
CVE-2026-24688
pypdf has possible Infinite Loop when processing outlines/bookmarks
Published 2026-01-27 · Analyzed
5.1EPSS 0.005
CVE-2026-48156
pypdf: Possible long runtimes for zero-only width values in cross-reference streams
Published 2026-05-28 · Analyzed
5.1EPSS 0.002
CVE-2026-49460
pypdf: Inefficient decoding of FlateDecode PNG predictor streams
Published 2026-06-22 · Analyzed
5.1EPSS 0.002