CVE-2018-1000039: Artifex Mupdf
Medium severity, CVSS 6.3. EPSS: 1.8% chance of exploitation in the next 30 days.
In Artifex MuPDF 1.12.0 and earlier, multiple heap use after free bugs in the PDF parser could allow an attacker to execute arbitrary code, read memory, or cause a denial of service via a crafted file.
Affected products
- Artifex Mupdf: up to and including 1.12.0
Published 2018-05-24. Last modified 2026-06-17.