CVE-2026-102996: Pypdf Project Pypdf
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
pypdf is a free and open-source pure-python PDF library. Prior to 6.18.1, a crafted PDF can provide a TrueType or Type1 simple font with an unusually large /Widths array, causing pypdf/_font.py Font._collect_tt_t1_character_widths to process entries beyond the 256 character codes meaningful for a simple font and consume excessive memory during operations such as text extraction. This issue is fixed in version 6.18.1.
Affected products
- Pypdf Project Pypdf: before 6.18.1 (fixed in 6.18.1)
Published 2026-09-30. Last modified 2026-10-05.