CVE-2023-24304: Irfanview
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Improper input validation in the PDF.dll plugin of IrfanView v4.60 allows attackers to execute arbitrary code via opening a crafted PDF file.
Affected products
- Irfanview Irfanview: version 4.60 only
Published 2023-03-28. Last modified 2026-06-17.