pypdf has 43 CVEs on record between 2023 and 2026. Cadence is steady at roughly 11 per quarter. The busiest recent month was June 2026 with 9. The median CVSS is 5.5 (medium). None have a confirmed exploitation report. The dominant weakness classes are CWE-400 (6) and CWE-835 (6).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 5.5
- Publish → KEV
- —
- Last 90 days
- 11 prev 14
Worst active — by depth score
CVE-2026-59936Highpypdf: Possible infinite loop for not terminated inline images41CVE-2026-59935Highpypdf: Possible infinite loop for not terminated inline images (ASCII85 and ASCIIHex filter)41CVE-2026-24688Mediumpypdf has possible Infinite Loop when processing outlines/bookmarks40CVE-2026-41314Medium· 6.5pypdf: Manipulated FlateDecode image dimensions can exhaust RAM36CVE-2026-41313Medium· 6.5pypdf: Possible long runtimes for wrong size values in incremental mode36
pypdf vulnerabilities
CVEs affecting pypdf, newest first. Open any entry for full detail, references, and exploit status.
43 CVEsRSS
CVE-2026-27888Mediumpypdf: Manipulated FlateDecode XFA streams can exhaust RAM
pypdf: Manipulated FlateDecode XFA streams can exhaust RAM
CVE-2026-27025Mediumpypdf has possible long runtimes/large memory usage for large /ToUnicode streams
pypdf has possible long runtimes/large memory usage for large /ToUnicode streams
CVE-2026-27026Mediumpypdf possibly has long runtimes for malformed FlateDecode streams
pypdf possibly has long runtimes for malformed FlateDecode streams
CVE-2026-27024Mediumpypdf has a possible infinite loop when processing TreeObject
pypdf has a possible infinite loop when processing TreeObject
CVE-2026-24688MediumPoCpypdf has possible Infinite Loop when processing outlines/bookmarks
pypdf has possible Infinite Loop when processing outlines/bookmarks
CVE-2026-22690Lowpypdf has possible long runtimes for missing /Root object with large /Size values
pypdf has possible long runtimes for missing /Root object with large /Size values
CVE-2026-22691Lowpypdf has possible long runtimes for malformed startxref
pypdf has possible long runtimes for malformed startxref
CVE-2025-66019Mediumpypdf's LZWDecode streams be manipulated to exhaust RAM
pypdf's LZWDecode streams be manipulated to exhaust RAM
CVE-2025-62707Mediumpypdf possibly loops infinitely when reading DCT inline images without EOF marker
pypdf possibly loops infinitely when reading DCT inline images without EOF marker
CVE-2025-62708Mediumpypdf can exhaust RAM via manipulated LZWDecode streams
pypdf can exhaust RAM via manipulated LZWDecode streams
CVE-2025-55197MediumPyPDF's Manipulated FlateDecode streams can exhaust RAM
PyPDF's Manipulated FlateDecode streams can exhaust RAM
CVE-2023-46250Medium· 5.1Possible Infinite Loop when PdfWriter(clone_from) is used with a PDF
Possible Infinite Loop when PdfWriter(clone_from) is used with a PDF
CVE-2023-36464Medium· 6.2pypdf and PyPDF2 possible Infinite Loop when a comment isn't followed by a character
pypdf and PyPDF2 possible Infinite Loop when a comment isn't followed by a character