Pdf-Xchange Pdf-Tools vulnerabilities

172 known vulnerabilities affecting pdf-xchange/pdf-tools.

Total CVEs
172
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH94MEDIUM61LOW17

Vulnerabilities

Page 1 of 9
CVE-2025-6660HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6660 [HIGH] CWE-122 CVE-2025-6660: PDF-XChange Editor GIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. PDF-XChange Editor GIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The s
nvd
CVE-2025-6654HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6654 [HIGH] CWE-787 CVE-2025-6654: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu PDF-XChange Editor PRC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specifi
nvd
CVE-2025-6651HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6651 [HIGH] CWE-787 CVE-2025-6651: PDF-XChange Editor JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu PDF-XChange Editor JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specifi
nvd
CVE-2025-6644HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6644 [HIGH] CWE-416 CVE-2025-6644: PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific fla
nvd
CVE-2025-6661HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6661 [HIGH] CWE-416 CVE-2025-6661: PDF-XChange Editor App Object Use-After-Free Remote Code Execution Vulnerability. This vulnerability PDF-XChange Editor App Object Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exis
nvd
CVE-2025-6647HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6647 [HIGH] CWE-787 CVE-2025-6647: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specifi
nvd
CVE-2025-6640HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6640 [HIGH] CWE-416 CVE-2025-6640: PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific fla
nvd
CVE-2025-6659HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6659 [HIGH] CWE-787 CVE-2025-6659: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu PDF-XChange Editor PRC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specifi
nvd
CVE-2025-6645HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6645 [HIGH] CWE-416 CVE-2025-6645: PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific fla
nvd
CVE-2025-6642HIGHCVSS 7.8v10.5.2.3952025-06-25
CVE-2025-6642 [HIGH] CWE-125 CVE-2025-6642: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific
nvd
CVE-2025-6646LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6646 [LOW] CWE-416 CVE-2025-6646: PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulner PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The spec
nvd
CVE-2025-6658LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6658 [LOW] CWE-125 CVE-2025-6658: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6656LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6656 [LOW] CWE-125 CVE-2025-6656: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6652LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6652 [LOW] CWE-125 CVE-2025-6652: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6653LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6653 [LOW] CWE-125 CVE-2025-6653: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6641LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6641 [LOW] CWE-125 CVE-2025-6641: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6643LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6643 [LOW] CWE-125 CVE-2025-6643: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6648LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6648 [LOW] CWE-125 CVE-2025-6648: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6650LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6650 [LOW] CWE-125 CVE-2025-6650: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd
CVE-2025-6649LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6649 [LOW] CWE-125 CVE-2025-6649: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The
nvd