CVE-2021-27807

MEDIUM5.5EPSS 0.49%

Excessive Iteration Denial of Service in Apache PDFBox

Published: 6/16/2021Modified: 4/28/2026

Description

A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox version 2.0.22 and prior 2.0.x versions.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.5CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

References (28)