Font._collect_cid_character_widths of the file pypdf/_font.py of the component Font Handler. The manipulation results in uncontrolled memory allocation.This vulnerability is reported as CVE-2026-71852. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.
SOCIAL SHARE CARD GENERATOR