AUGUST 25, 2026
Live Feed
Back to database
Case File

CVE-2026-13128

HIGH · CVSS 7.8 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

A vulnerability in Java allows for the embedding of JavaScript within PDF files, which can lead to the deletion of pages and subsequent application crashes due to continued access to document properties. This high-severity issue poses significant risks for applications relying on Java for PDF processing. Organizations using Java in environments where PDF manipulation occurs should prioritize patching to mitigate potential disruptions and data loss.

CVE
CVE-2026-13128
Severity
HIGH
CVSS
7.8
EPSS
0.12%
Java

Original NVD Description

Embedding JavaScript within a PDF file will cause the page to be deleted. Subsequent scripts will continue to access the relevant properties of the document view, eventually leading to the crash of the application.

Related CVEs

Other vulnerabilities affecting the same vendor(s)