AUGUST 25, 2026
Live Feed
Back to database
Case File

CVE-2026-57240

HIGH · CVSS 7.8 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

A vulnerability in Java allows an application to crash when it opens a PDF file that has had its fields deleted via JavaScript, due to the application continuing to reference outdated field pointers. This can lead to denial-of-service conditions, making it critical for developers and organizations using Java-based applications that handle PDF files to prioritize remediation efforts. Immediate attention is advised to mitigate potential disruptions in service.

CVE
CVE-2026-57240
Severity
HIGH
CVSS
7.8
EPSS
0.13%
Java

Original NVD Description

When the application opens a PDF file and JavaScript deletes the PDF fields, the subsequent logic still uses the old field pointers, resulting in invalid pointer references and causing the application to crash.

Related CVEs

Other vulnerabilities affecting the same vendor(s)