THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-fc8x-2rww-xw9m (medium) — pypdf: Inefficient handling of non-whitespace inputs in read_until_whitespace

[GHSA] GHSA-fc8x-2rww-xw9m (medium) — pypdf: Inefficient handling of non-whitespace inputs in read_until_whitespace

medgithub_advisoriesPublished 2026-09-02

GHSA-fc8x-2rww-xw9m Severity: medium CVE: CVE-2026-82398

pypdf: Inefficient handling of non-whitespace inputs in read_until_whitespace

### Impact An attacker who uses this vulnerability can craft a PDF which leads to long runtimes. This requires a call to `read_until_whitespace` with an input which does not have whitespace for a long time.

### Patches This has been fixed in [pypdf==6.15.0](http

Indicators of compromise

Original source: https://github.com/advisories/GHSA-fc8x-2rww-xw9m