Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2663▼ 380 respecto a la semana anterior
Críticas / altas1289▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 274 respecto a la semana anterior
129 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (1.9) | 0.11% | — | Freedesktop PopplerAI | 29/9/2026 | 30/9/2026 | A vulnerability was identified in Freedesktop Poppler up to 26.08.0. Affected is the function SplashClip::clipToPath of the file splash/SplashClip.cc. Such manipulation leads to integer overflow. The attack can only be performed from a local environment. The exploit is publicly available and might be used. Upgrading… | |
| Aplazada | Baja (1.9) | 0.11% | — | Freedesktop PopplerAI | 29/9/2026 | 2/10/2026 | A vulnerability was determined in Freedesktop Poppler 26.06.0/26.07.0/26.08.0. This impacts the function FoFiTrueType::cvtSfnts of the file fofi/FoFiTrueType.cc. This manipulation causes integer overflow. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized. Patch name:… | |
| Pendiente de análisis | Media (5.5) | 0.15% | — | PopplerAI | 18/9/2026 | 18/9/2026 | A denial of service flaw was found in Poppler's Splash backend. A crafted PDF with tiling-pattern geometry approaching the int32 boundary can cause SplashOutputDev::tilingPatternFill to compute an attacker-controlled repeat count that drives an excessively long loop in the pattern-fill scanline routine, without a… | |
| Aplazada | Baja (2.1) | 0.43% | — | Freedesktop PopplerAI | 18/9/2026 | 22/9/2026 | A vulnerability was determined in Freedesktop Poppler 26.07.0. This affects the function FoFiTrueType::mapCodeToGID of the file fofi/FoFiTrueType.cc. Executing a manipulation of the argument segCnt can lead to integer overflow. The attack can be launched remotely. The exploit has been publicly disclosed and may be… | |
| Aplazada | Baja (2.1) | 0.43% | — | Freedesktop PopplerAI | 18/9/2026 | 18/9/2026 | A vulnerability was found in Freedesktop Poppler 26.07.0. The impacted element is the function JBIG2Stream::readCodeTableSeg of the file poppler/JBIG2Stream.cc. Performing a manipulation results in integer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. The patch is… | |
| Aplazada | Baja (2.1) | 0.59% | — | Freedesktop PopplerAI | 17/9/2026 | 22/9/2026 | A flaw has been found in Freedesktop Poppler 26.07.0. Impacted is the function JBIG2Stream::rewind of the file poppler/JBIG2Stream.cc. This manipulation causes null pointer dereference. It is possible to initiate the attack remotely. The exploit has been published and may be used. Upgrading to version 26.08.0 is… | |
| Aplazada | Baja (2.1) | 0.56% | — | Freedesktop PopplerAI | 17/9/2026 | 22/9/2026 | A vulnerability was detected in Freedesktop Poppler 26.07.0. This issue affects the function SampledFunction::SampledFunction of the file poppler/Function.cc of the component SampledFunction. The manipulation of the argument BitsPerSample results in integer overflow. The attack may be performed from remote. The… | |
| Aplazada | Crítica (9.3) | 2.6% | — | ZeroxAIPopplerAI | 4/9/2026 | 23/9/2026 | zerox 1.1.20 contains an OS command injection vulnerability in the file download mechanism where the temporary file extension derived from document URLs is interpolated unsanitized into shell commands executed by poppler utilities. Attackers can craft document URLs with malicious file extensions containing command… | |
| Aplazada | Alta (8.7) | 0.31% | — | Innodata Labs PopplerAIPopplerAI | 25/8/2026 | 28/9/2026 | Denial-of-service (DoS) vulnerability in the internal JPEG2000 (JPX) decoding implementation of the Poppler fork developed by Innodata Labs. When an application processes an untrusted PDF file containing specially crafted JPXDecode images, a remote attacker can cause uncontrolled memory consumption. The flaw occurs in… | |
| Aplazada | Media (6.9) | 0.40% | — | Fdawgs Node-popplerAI | 25/8/2026 | 28/9/2026 | A vulnerability was detected in Fdawgs node-poppler up to 9.1.2/10.0.1. The impacted element is the function pdfInfo/pdfToText/pdfToCairo/pdfToPpm/pdfImages/pdfToHtml/pdfToPs/pdfFonts/pdfDetach/pdfAttach/pdfSeparate/pdfUnite of the file src/index.js of the component Argument Injection Handler. Performing a… | |
| Pendiente de análisis | Alta (7.8) | 0.25% | — | PopplerAI | 1/6/2026 | 2/10/2026 | A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious PDF file that, when rendered, triggers an integer overflow in the `tilingPatternFill` function. This overflow leads to an undersized heap memory allocation, allowing a subsequent out-of-bounds… | |
| Aplazada | Media (6.1) | 0.17% | — | PopplerAI | 10/10/2025 | 17/6/2026 | Poppler ia a library for rendering PDF files, and examining or modifying their structure. A use-after-free (write) vulnerability has been detected in versions Poppler prior to 25.10.0 within the StructTreeRoot class. The issue arises from the use of raw pointers to elements of a `std::vector`, which can lead to… | |
| Aplazada | Baja (2.9) | 0.13% | — | PopplerAI | 1/10/2025 | 30/9/2026 | Poppler 24.06.1 through 25.x before 25.04.0 allows stack consumption and a SIGSEGV via deeply nested structures within the metadata (such as GTS_PDFEVersion) of a PDF document, e.g., a regular expression for a long pdfsubver string. This occurs in Dict::lookup, Catalog::getMetadata, and associated functions in PDFDoc,… | |
| Aplazada | Baja (2.9) | 0.22% | — | CairoAIPopplerAI | 4/8/2025 | 17/6/2026 | Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cairo-ft-font.c. | |
| Modificada | Media (6.5) | 0.32% | — | Freedesktop Poppler | 4/8/2025 | 5/7/2026 | An issue in the pdfseparate utility of freedesktop poppler v25.04.0 allows attackers to cause an infinite recursion via supplying a crafted PDF file. This can lead to a Denial of Service (DoS). | |
| Modificada | Media (5.5) | 0.45% | — | Freedesktop Poppler | 2/7/2025 | 17/6/2026 | Poppler is a PDF rendering library. Versions prior to 25.06.0 use `std::atomic_int` for reference counting. Because `std::atomic_int` is only 32 bits, it is possible to overflow the reference count and trigger a use-after-free. Version 25.06.0 patches the issue. | |
| Analizada | Baja (3.3) | 0.11% | — | Freedesktop Poppler | 18/4/2025 | 17/6/2026 | NSSCryptoSignBackend.cc in Poppler before 25.04.0 does not verify the adbe.pkcs7.sha1 signatures on documents, resulting in potential signature forgeries. | |
| Modificada | Alta (7.1) | 0.25% | — | Freedesktop Poppler | 5/4/2025 | 17/6/2026 | Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check. | |
| Modificada | Media (5.5) | 0.27% | — | Freedesktop Poppler | 5/4/2025 | 17/6/2026 | A floating-point exception in the PSStack::roll function of Poppler before 25.04.0 can cause an application to crash when handling malformed inputs associated with INT_MIN. | |
| Modificada | Media (4.3) | 0.62% | — | Freedesktop Poppler | 23/12/2024 | 17/6/2026 | libpoppler.so in Poppler through 24.12.0 has an out-of-bounds read vulnerability within the JBIG2Bitmap::combine function in JBIG2Stream.cc. | |
| Modificada | Alta (7.5) | 0.78% | — | Freedesktop PopplerRedhat Enterprise Linux | 21/6/2024 | 17/6/2026 | A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a denial of service. | |
| Modificada | Media (6.5) | 1.1% | — | Freedesktop Poppler | 22/8/2023 | 17/6/2026 | An issue was discovered in Poppler 22.08.0. There is a reachable assertion in Object.h, will lead to denial of service because PDFDoc::replacePageDict in PDFDoc.cc lacks a stream check before saving an embedded file. | |
| Modificada | Media (6.5) | 1.1% | — | Freedesktop Poppler | 22/8/2023 | 17/6/2026 | A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failure in markObject. | |
| Modificada | Media (6.5) | 1.1% | — | Freedesktop PopplerDebian Linux | 22/8/2023 | 17/6/2026 | An issue was discovered in Poppler 22.07.0. There is a reachable abort which leads to denial of service because the main function in pdfunite.cc lacks a stream check before saving an embedded file. | |
| Modificada | Media (6.5) | 1.1% | — | Freedesktop PopplerDebian Linux | 22/8/2023 | 17/6/2026 | In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes with SIGABRT) by crafting a PDF file in which the xref data structure is mishandled in getCatalog processing. Note that this vulnerability is caused by the incomplete patch of CVE-2018-20662. |