Excessive Iteration in PyPDF - #VU143598
Published: August 16, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to excessive iteration in XForm object extraction when extracting text from a page containing many XForm objects with reused objects. A remote attacker can craft a PDF file to cause a denial of service.
Exploitation requires the application to extract text from a page with many XForm objects, some of which are reused.