
We found results for “”
CVE-2025-62707
Good to know:


Date: October 22, 2025
pypdf is a free and open-source pure-python PDF library. Prior to version 6.1.3, an attacker who uses this vulnerability can craft a PDF which leads to an infinite loop. This requires parsing the content stream of a page which has an inline image using the DCTDecode filter. This has been fixed in pypdf version 6.1.3.
Severity Score
Related Resources (7)
Severity Score
Weakness Type (CWE)
Excessive Iteration
CWE-834Top Fix

Upgrade Version
Upgrade to version pypdf - 6.1.3;pypdf - 6.1.3;https://github.com/py-pdf/pypdf.git - 6.1.3
CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | NONE |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | NONE |
Integrity (I): | NONE |
Availability (A): | HIGH |