parse_bfrange of the file pypdf/_cmap.py of the component CMap Parsing. The manipulation leads to uncontrolled memory allocation.
This vulnerability is listed as CVE-2026-71870. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2026-71870 | py-pdf pypdf up to 6.14.x CMap Parsing pypdf/_cmap.py parse_bfrange memory allocation (Nessus ID 333524)
Reagiere als Erste:r — dein Feedback zählt!
A vulnerability marked as problematic has been reported in py-pdf pypdf up to 6.14.x. This issue affects the function
SOCIAL SHARE CARD GENERATOR