Description

FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. In versions 2.6.2 and below, any application that uses FPDI to process user-supplied PDF files is at risk, causing a Denial of Service (DoS) vulnerability. An attacker can upload a small, malicious PDF file that will cause the server-side script to crash due to memory exhaustion. Repeated attacks can lead to sustained service unavailability. This issue is fixed in version 2.6.3.

INFO

Published Date :

2025-08-05T23:34:17.937Z

Last Modified :

2025-08-07T14:02:48.590Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-54869 vulnerability.

Vendors Products
Fpdi Project
  • Fpdi
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-54869.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability