pdfminer CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

pdfminer vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to pdfminer, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-64512 Pdfminer.six is a community maintained fork of the original PDFMiner, a tool for extracting information from PDF documents. Prior to version 20251107, pdfminer.six will execute arbitrary code from a malicious pickle file if provided with a malicious PDF file. The `CMapDB._load_data()` function in pdfminer.six uses `pickle.loads()` to deserialize pickle files. These pickle files are supposed to be part of the pdfminer.six distribution stored in the `cmap/` directory, but a malicious PDF can speci [email protected] 8.6 0.07% 2025-11-10 2026-01-08
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence