CVE-2026-30276Patch(deftpdf / document_translator)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch deftpdf document_translator systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

An arbitrary file overwrite vulnerability in DeftPDF Document Translator v54.0 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-73

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • document_translator

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
document_translator

1 version affected across 1 product

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-04-12: 1Patch / Workaround · 2026-04-12: 1Technical Details · 2026-04-12: 104-12
Signal classification1 categories
Patch
1100.0%
Full discourse1 post
  • Giuseppe Paternicola@giuseppe_1337
    Patch

    ```json { "x": "🚨 CRITICAL: CVE-2026-30276 (CVSS 9.8) - DeftPDF Document Translator v54.0 arbitrary file overwrite flaw enables remote code execution. No authentication required. Patch immediately. #CVE #PatchNow #ThreatIntel", "linkedin": "🚨 CRITICAL VULNERABILITY ALERT\n\nCVE-2026-30276 | CVSS 9.8 | DeftPDF Document Translator v54.0\n\nAn arbitrary file overwrite vulnerability has been identified in DeftPDF Document Translator version 54.0 that poses an immediate threat to organizations.\n\nKEY DETAILS:\n• Vulnerability: Arbitrary file overwrite via file import process (CWE-73)\n• Attack Vector: Network-based, no authentication required\n• Impact: Remote arbitrary code execution and information exposure\n• Affected Product: DeftPDF Document Translator v54.0\n• CVSS Score: 9.8 (Critical)\n• Attack Complexity: Low\n• User Interaction: None required\n\nTHREAT SUMMARY:\nAttackers can exploit the file import functionality to overwrite critical internal files, leading to complete system compromise. The vulnerability requires no user interaction and can be exploited remotely without authentication, making it extremely dangerous.\n\nRECOMMENDED ACTIONS:\n• Immediately identify all instances of DeftPDF Document Translator v54.0 in your environment\n• Disable or restrict access to the file import functionality until patched\n• Monitor for suspicious file operations and unexpected system behavior\n• Apply vendor patches as soon as they become available\n• Review logs for potential exploitation attempts\n\nSOC teams should prioritize detection rules for unusual file write operations associated with this application.\n\n#CVE #Vulnerability #PatchNow #ThreatIntel #DFIR #CyberSecurity #InfoSec #VulnerabilityManagement", "reddit": "CRITICAL VULNERABILITY ALERT: CVE-2026-30276 - DeftPDF Document Translator v54.0 Arbitrary File Overwrite\n\nSEVERITY: CRITICAL (CVSS 9.8)\n\nOVERVIEW\n\nA critical arbitrary file overwrite vulnerability has been disclosed in DeftPDF Document Translator version 54.0. This vulnerability allows remote attackers to overwrite critical internal files through the application's file import process, resulting in arbitrary code execution or information exposure.\n\nVULNERABILITY DETAILS\n\nCVE ID: CVE-2026-30276\nCVSS Score: 9.8 (Critical)\nCVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\nCWE Classification: CWE-73 (External Control of File Name or Path)\nAffected Product: DeftPDF Document Translator v54.0\n\nATTACK VECTOR BREAKDOWN\n\n- Attack Vector (AV:N): Network-based exploitation - can be exploited remotely\n- Attack Complexity (AC:L): Low complexity - exploitation is straightforward\n- Privileges Required (PR:N): No authentication needed\n- User Interaction (UI:N): No user interaction required\n- Scope (S:U): Unchanged - impacts only the vulnerable component\n- Confidentiality (C:H): High impact - complete information disclosure possible\n- Integrity (I:H): High impact - complete data modification possible\n- Availability (A:H): High impact - complete system denial of service possible\n\nTECHNICAL ANALYSIS\n\nThe vulnerability exists in the file import functionality of DeftPDF Document Translator. Attackers can manipulate file paths during the import process to write arbitrary files to sensitive system locations. This path traversal weakness (CWE-73) allows overwriting of critical application or system files.\n\nThe lack of proper input validation and sanitization in the file handling routines enables attackers to:\n\n1. Overwrite configuration files to modify application behavior\n2. Replace executable files to achieve code execution\n3. Access or modify sensitive data files\n4.

    Post summary

    This alert highlights a critical CVE-2026-30276 that allows arbitrary file overwrite leading to remote code execution in DeftPDF Document Translator v54.0, urging immediate patching and mitigation steps.

    0000063
    25 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appdeftpdfdocument_translator54.0android-

Explore more