Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Cheonwoong-Park

#12927of 53,633
20.7Total CVSS
Vulnerabilities · 3
Medium
3
PT-2026-20908
6.9
2026-02-18
Pypi · Pypdf · CVE-2026-27025
**Name of the Vulnerable Software and Affected Versions** pypdf versions prior to 6.7.1 **Description** pypdf is a free and open-source pure-python PDF library. An attacker can create a malicious PDF file that causes excessive runtime and memory usage when processed. This occurs when parsing the `/ToUnicode` entry of a font containing unusually large values, such as during text extraction. **Recommendations** Update to version 6.7.1 or later.
PT-2026-20909
6.9
2026-02-18
Pypi · Pypdf · CVE-2026-27026
**Name of the Vulnerable Software and Affected Versions** pypdf versions prior to 6.7.1 **Description** pypdf is a free and open-source pure-python PDF library. A crafted PDF file can cause excessive processing time due to a malformed /FlateDecode stream and byte-by-byte decompression. **Recommendations** Update to version 6.7.1 or later.
PT-2026-21301
6.9
2026-02-18
Pypi · Pypdf · CVE-2026-27024
**Name of the Vulnerable Software and Affected Versions** pypdf versions prior to 6.7.1 **Description** A crafted PDF file can cause an infinite loop when accessing the children of a TreeObject, such as during outline processing. This issue affects the pypdf library, a free and open-source pure-python PDF library. **Recommendations** Update to version 6.7.1 or later.