
CVE-2026-28804 pypdf is a free and open-source pure-python PDF library. Prior to version 6.7.5, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes.… https://www.cve.org/CVERecord?id=CVE-2026-28804
Post summary
The text describes a denial‑of‑service vulnerability in pypdf versions before 6.7.5, noting that crafted PDFs can cause long runtimes, but it provides no PoC, exploit code, patch information, or evidence of active exploitation.

