CVE-2026-28804 | py-pdf pypdf up to 6.7.4 ASCIIHexDecode algorithmic complexity (GHSA-9m86-7pmv-2852)
A vulnerability marked as problematic has been reported in py-pdf pypdf up to 6.7.4. Impacted is an unknown function. The manipulation of the argument ASCIIHexDecode leads to inefficient algorithmic complexity.
This vulnerability is traded as CVE-2026-28804. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.