Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-49461

pypdf is a free and open-source pure-python PDF library. Prior to 6.12.2, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires extracting the text of a page which contains a form XObject with self-references. This vulnerability is fixed in 6.12.2.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 2.6%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2026-49461


Contact Us

Shodan ® - All rights reserved