CVE-2026-27026 | py-pdf pypdf up to 6.7.0 Decompression /FlateDecode allocation of resources (GHSA-9mvc-8737-8j8h / Nessus ID 299729)
A vulnerability classified as problematic has been found in py-pdf pypdf up to 6.7.0. Affected by this issue is some unknown functionality of the component Decompression Handler. This manipulation of the argument /FlateDecode causes allocation of resources.
This vulnerability is tracked as CVE-2026-27026. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.