← Voltar à pesquisa de CVEs

CVE-2026-57259

PDF Parser

Descrição

The input file does not need to be strictly in a structurally valid PDF format. Instead, after reviewing the content, the original document disguised as a PDF will be sent to the parser. Malicious documents will construct malicious external entities that, through the protocol, point to local paths, thereby allowing access to any local files within the user-s permission range.

CVSS 6.5EPSS 0.217%Risco 0.66
Ver fonte
Publicação
2026-07-08 09:16:34
Versões afetadas
unknown
Tipo
Outro
Vetor
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Sistemas operativos
Windows