6.9.1
11 years ago
5 days ago
Known vulnerabilities in the pypdf package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
pypdf is an A pure-python PDF library capable of splitting, merging, cropping, and transforming PDF files Affected versions of this package are vulnerable to Inefficient Algorithmic Complexity in the decoding process of array-based streams. An attacker can cause excessive resource consumption by crafting a PDF with a large number of entries in an array-based stream. How to fix Inefficient Algorithmic Complexity? Upgrade | [,6.9.1) |
pypdf is an A pure-python PDF library capable of splitting, merging, cropping, and transforming PDF files Affected versions of this package are vulnerable to Allocation of Resources Without Limits or Throttling in Note: The project maintainers note that "As far as we are aware, this mostly affects reading from buffers of unknown size, as returned by How to fix Allocation of Resources Without Limits or Throttling? Upgrade | [,6.8.0) |