The library in question is `tei/xml/tei/jtei_aux/trans/pdf/lib/fontbox-2.0.8.jar` and presents this vulnerability: https://www.cvedetails.com/cve/CVE-2018-8036/ If we update it to 2.0.10 or later would sove this issue.