Known Vulnerabilities for Podofo by Podofo Project
Listed below are 10 of the newest known vulnerabilities associated with "Podofo" by "Podofo Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44348 json | PoDoFo is a C++17 PDF manipulation library. From 1.0.0 to before 1.0.4, a double-free vulnerability exists in compute_hash_to... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2025-9394 json | Not Provided | 2025-08-24 | 2026-04-29 | |
| CVE-2023-31568 json | Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptRC4::PdfEncryptRC4. | 8.8 - HIGH | 2023-05-10 | 2023-05-15 |
| CVE-2023-31567 json | Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptAESV3::PdfEncryptAESV3. | 8.8 - HIGH | 2023-05-10 | 2023-05-15 |
| CVE-2023-31566 json | Podofo v0.10.0 was discovered to contain a heap-use-after-free via the component PoDoFo::PdfEncrypt::IsMetadataEncrypted(). | 8.8 - HIGH | 2023-05-10 | 2023-05-15 |
| CVE-2023-31556 json | podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfDictionary::findKeyParent. | 6.5 - MEDIUM | 2023-05-10 | 2023-05-17 |
| CVE-2023-31555 json | podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfObject::DelayedLoad. | 6.5 - MEDIUM | 2023-05-10 | 2023-05-17 |
| CVE-2023-2241 json | A vulnerability, which was classified as critical, was found in PoDoFo 0.10.0. Affected is the function readXRefStreamEntry o... | 7.8 - HIGH | 2023-04-22 | 2023-11-07 |
| CVE-2021-30472 json | A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.... | 7.8 - HIGH | 2021-05-26 | 2022-12-21 |
| CVE-2021-30471 json | A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in PdfNamesTree::AddToDictionary function in src/podofo/doc/... | 5.5 - MEDIUM | 2021-05-26 | 2022-12-21 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Podofo Project | Podofo | 0.9.6 | |||
| Application | Podofo Project | Podofo | 0.9.6 | |||
| Application | Podofo Project | Podofo | 0.9.5 | |||
| Application | Podofo Project | Podofo | 0.9.4 | |||
| Application | Podofo Project | Podofo | 0.9.3 | |||
| Application | Podofo Project | Podofo | 0.9.2 | |||
| Application | Podofo Project | Podofo | 0.9.1 | |||
| Application | Podofo Project | Podofo | 0.9.0 | |||
| Application | Podofo Project | Podofo | 0.8.4 | |||
| Application | Podofo Project | Podofo | 0.8.3 | |||
| Application | Podofo Project | Podofo | 0.8.2 | |||
| Application | Podofo Project | Podofo | 0.8.1 | |||
| Application | Podofo Project | Podofo | 0.8.0 | |||
| Application | Podofo Project | Podofo | 0.7.0 | |||
| Application | Podofo Project | Podofo | 0.6.0 | |||
| Application | Podofo Project | Podofo | 0.5.0 | |||
| Application | Podofo Project | Podofo | 0.4.0 | |||
| Application | Podofo Project | Podofo | 0.3 | |||
| Application | Podofo Project | Podofo | 0.2 | |||
| Application | Podofo Project | Podofo | 0.1 |