CVE-2023-31566: Podofo Project Podofo

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Podofo v0.10.0 was discovered to contain a heap-use-after-free via the component PoDoFo::PdfEncrypt::IsMetadataEncrypted().

Affected products

Published 2023-05-10. Last modified 2026-06-17.