SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-57241

MEDIUM · CVSS 6.1 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

A vulnerability exists in Java where the application mishandles PDF rendering due to JavaScript operations, leading to a loss of synchronization in page-related objects. This flaw can result in an application crash from out-of-bounds access, potentially disrupting services for users. Organizations utilizing Java for PDF processing should prioritize addressing this issue to maintain application stability and security.

CVE
CVE-2026-57241
Severity
MEDIUM
CVSS
6.1
EPSS
0.11%
Java

Original NVD Description

The application opens the PDF, and JavaScript performs operations on the page and the document, causing the page-related objects within the application to lose synchronization; however, the renderer still trusts the outdated page count, and eventually the application crashes due to out-of-bounds access.

Related CVEs

Other vulnerabilities affecting the same vendor(s)