CVE-2026-59936
EUVD-2026-4236608.07.2026, 20:16
pypdf is a free and open-source pure-python PDF library. Prior to 6.14.1, an attacker can craft a PDF with a page content stream containing a not terminated inline image, causing an infinite loop during inline image end marker detection such as when extracting page text. This issue is fixed in version 6.14.1.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pypdf_project | pypdf | 𝑥 < 6.14.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases