Pypdf-project
6 CVEs tracked since 2026. Since Feb 2026, none of them reached CISA KEV.
Pypdf-project CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2026-02 | 6 | 0 |
Products
The products that kept showing up in Pypdf-project's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Pypdf-project.
- CVE-2026-59936pypdf: Possible infinite loop for not terminated inline images7.5
- CVE-2026-59935pypdf: Possible infinite loop for not terminated inline images (ASCII85 and ASCIIHex filter)7.5
- CVE-2026-59937pypdf: Possible long runtimes for repeated malformed cross-reference entries7.5
- CVE-2026-59938pypdf: Possible large memory usage for wrong image dimensions5.3
- CVE-2026-57204pypdf: Missing stream length values ignore defined limits6.5
- CVE-2026-54651pypdf: Possible infinite loop when processing threads/articles in writer5.5
- CVE-2026-49460pypdf: Inefficient decoding of FlateDecode PNG predictor streams3.3
- CVE-2026-49461pypdf: Possible large memory usage for form XObjects during text extraction5.5
- CVE-2026-54531pypdf: Possible infinite loop when processing outlines/bookmarks in writer5.5
- CVE-2026-54530pypdf: Possible infinite loop when retrieving fonts for layout-mode text extraction5.5
- CVE-2026-48155pypdf: Possible large memory usage for large offsets for layout mode text5.5
- CVE-2026-48156pypdf: Possible long runtimes for zero-only width values in cross-reference streams3.3
- CVE-2026-48735pypdf: Manipulated XMP metadata streams can exhaust RAM5.5
- CVE-2026-41314pypdf: Manipulated FlateDecode image dimensions can exhaust RAM6.5
- CVE-2026-41313pypdf: Possible long runtimes for wrong size values in incremental mode6.5
The record
- Peak rank
- #181 in Feb 2026
- Busiest month shown
- Feb 2026, 6 CVEs
- Months with a KEV entry
- 0 since Feb 2026
- Monthly snapshots
- 1 since 2026