AUGUST 25, 2026
Live Feed
Back to database
Case File

CVE-2026-57248

HIGH · CVSS 7.8 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

A vulnerability in Java allows for insufficient checks on object types and arguments when handling PDF files with JavaScript annotations, leading to potential application crashes. This flaw poses a high risk, particularly for applications that rely on PDF processing and JavaScript execution. Organizations utilizing Java for PDF handling should prioritize remediation to mitigate the risk of application instability and potential exploitation.

CVE
CVE-2026-57248
Severity
HIGH
CVSS
7.8
EPSS
0.15%
Java

Original NVD Description

When the application opens a PDF file and JavaScript writes annotation attributes, there is a lack of sufficient object type and argument checks. As a result, due to the damage to the internal structure of the annotations, it causes the application to crash during subsequent release.

Related CVEs

Other vulnerabilities affecting the same vendor(s)