Podofo Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 63
    Known Exploited: 0
    3
    Critical Level Threats
    19
    High Level Threats
    41
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-46205

    A heap-use-after free in the PdfTokenizer::ReadDictionary function of podofo v0.10.0 to v0.10.5 allows attackers to cause a Denial of Service (DoS) by supplying a crafted PDF file. NOTE: this is disputed by the Supplier because there is no available file to reproduce the issue.

    Last Modified: Oct 27, 2025
    Published: Oct 01, 2025

    CVE-2025-9394

    PoDoFo PDF Dictionary PdfTokenizer.cpp DetermineDataType use after free

    Last Modified: Sep 12, 2025
    Published: Aug 24, 2025

    CVE-2023-31568

    Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptRC4::PdfEncryptRC4.

    Last Modified: Jan 27, 2025
    Published: May 10, 2023

    CVE-2023-31555

    podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfObject::DelayedLoad.

    Last Modified: Jan 27, 2025
    Published: May 10, 2023

    CVE-2023-31566

    Podofo v0.10.0 was discovered to contain a heap-use-after-free via the component PoDoFo::PdfEncrypt::IsMetadataEncrypted().

    Last Modified: Jan 27, 2025
    Published: May 10, 2023
    Items Per Page
    Podofo_Project Vulnerabilities & Security CVEs | CVE-DB