CVE-2026-24688 | py-pdf pypdf up to 6.6.1 Bookmarks infinite loop (Nessus ID 296930 / WID-SEC-2026-1730)
A vulnerability, which was classified as problematic, was found in py-pdf pypdf up to 6.6.1. Affected is an unknown function of the component Bookmarks. Such manipulation leads to infinite loop.
This vulnerability is referenced as CVE-2026-24688. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.