CVE-2019-25550: Verypdf Encrypt PDF

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Encrypt PDF 2.3 contains a buffer overflow vulnerability that allows local attackers to crash the application by inputting excessively long strings into password fields. Attackers can paste a 1000-byte buffer into the User Password or Master Password field in the Settings dialog to trigger an application crash when importing PDF files.

Affected products

  • Verypdf Encrypt PDF: version 2.3 only

Published 2026-03-21. Last modified 2026-06-17.