All 5 CVE vulnerabilities found in sumatrapdf, with AI-generated Chinese analysis, references, and POCs.
Vendor: sumatrapdfreader
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-25961 | SumatraPDF Update MITM -> Arbitrary Code Execution CWE-295 | 7.5 | High | 2026-02-09 |
| CVE-2026-25920 | SumatraPDF has a heap out-of-bounds read in MOBI HuffDic decompressor CWE-125 | 5.5 | Medium | 2026-02-09 |
| CVE-2026-25880 | Untrusted Search Path in SumatraPDF Reader (explorer.exe on Windows) CWE-426 | 7.8 | High | 2026-02-09 |
| CVE-2026-23951 | SumatraPDF's Integer Underflow in PalmDbReader Leads to Crash CWE-125 | 5.5 | Medium | 2026-01-22 |
| CVE-2026-23512 | SumatraPDF has an Untrusted Search Path in sumatrapdf/src/AppTools.cpp CWE-426 | 8.6 | High | 2026-01-14 |
All 5 known CVE vulnerabilities affecting sumatrapdf with full Chinese analysis, references, and POCs where available.