High severity8.8OSV Advisory· Published Feb 3, 2026· Updated Jun 17, 2026
CVE-2025-65875
CVE-2025-65875
Description
An arbitrary file upload vulnerability in the AddFont() function of FPDF v1.86 and earlier allows attackers to execute arbitrary code via uploading a crafted PHP file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4Patches
Vulnerability mechanics
References
2- advisories.gitlab.com/pkg/composer/tecnickcom/tc-lib-pdf-font/CVE-2024-56520/nvdThird Party Advisory
- www.fpdf.orgnvdProduct
News mentions
0No linked articles in our index yet.