CVE-2026-27025 | py-pdf pypdf up to 6.7.0 Font /ToUnicode iteration (GHSA-wgvp-vg3v-2xq3 / Nessus ID 299727)
A vulnerability described as problematic has been identified in py-pdf pypdf up to 6.7.0. Affected by this vulnerability is an unknown functionality of the component Font Handler. The manipulation of the argument /ToUnicode results in excessive iteration.
This vulnerability is identified as CVE-2026-27025. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.