CVE-2026-30276 is a critical arbitrary file overwrite vulnerability affecting DeftPDF Document Translator v54.0, allowing attackers to compromise critical internal files via the file import process. Rated 9.8 CVSS, this flaw can be exploited remotely with low complexity and no user interaction. The potential impact is severe, encompassing arbitrary code execution and significant information exposure. While not yet observed in active exploitation (KEV) and lacking public exploit code, it is listed on the "Hot List" and has garnered minimal community attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
54.0CPE matchmatch criteria | cpe:2.3:a:deftpdf:document_translator:54.0:*:*:*:*:android:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.