In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade lopdf to version 0.42.0 or higher.
Affected versions of this package are vulnerable to Uncontrolled Recursion through the load_mem function and related entry points when parsing deeply nested PDF arrays and dictionaries without enforcing a maximum recursion depth. An attacker can cause the process to exhaust the call stack and abort, resulting in a crash, by supplying a specially crafted PDF file with excessive nesting.