Pypi · Pypdf · CVE-2026-102993
**Name of the Vulnerable Software and Affected Versions**
pypdf versions prior to 6.17.0
**Description**
A crafted PDF file can contain unusually large Roman page-label values. When an application retrieves document page labels, the `pypdf/ page labels.py` module generates excessively large numeral strings, leading to high memory consumption and potentially causing the application to become unavailable.
**Recommendations**
Update to version 6.17.0.