Foxit

Pdf Reader

313 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.09%
  • Veröffentlicht 19.12.2025 07:16:01
  • Zuletzt bearbeitet 23.12.2025 17:36:09

A use-after-free vulnerability exists in the AcroForm handling of Foxit PDF Reader and Foxit PDF Editor before 2025.2.1,14.0.1 and 13.2.1 on Windows . When opening a PDF containing specially crafted JavaScript, a pointer to memory that has already...

Medienbericht
  • EPSS 0.02%
  • Veröffentlicht 19.12.2025 02:16:04
  • Zuletzt bearbeitet 23.12.2025 17:35:55

A local privilege escalation vulnerability exists in the Foxit PDF Reader/Editor Update Service. During plugin installation, incorrect file system permissions are assigned to resources used by the update service. A local attacker with low privileges ...

  • EPSS 0.01%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 06.01.2026 14:39:54

An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. Opening a malicious PDF containing a crafted JavaScript call to search.query() with a crafted cDIPath parameter (e.g., "/") may cause an out-of-bounds rea...

  • EPSS 0.03%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 18.12.2025 21:31:21

Foxit PDF Editor and Reader before 2025.2.1 allow signature spoofing via OCG. When Optional Content Groups (OCG) are supported, the state property of an OCG is runtime-only and not included in the digital signature computation buffer. An attacker can...

  • EPSS 0.02%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 15.12.2025 20:17:46

Foxit PDF Editor and Reader before 2025.2.1 allow signature spoofing via triggers. An attacker can embed triggers (e.g., JavaScript) in a PDF document that execute during the signing process. When a signer reviews the document, the content appears no...

  • EPSS 0.01%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 06.01.2026 14:45:01

An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. A crafted PDF containing JavaScript that calls closeDoc() while internal objects are still in use can cause premature release of these objects. This use-a...

  • EPSS 0.01%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 06.01.2026 14:48:37

An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. A crafted PDF can contain JavaScript that attaches an OnBlur action on a form field that destroys an annotation. During user right-click interac...

  • EPSS 0.01%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 18.12.2025 21:41:21

An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. An attacker able to alter or replace the static HTML files used by the StartPage feature can cause the application to load malicious or compromi...

  • EPSS 0.01%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 07.01.2026 15:15:45

An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. A crafted PDF can use JavaScript to alter annotation content and subsequently clear the file's modification status via JavaScript interfaces. Th...

  • EPSS 0.01%
  • Veröffentlicht 11.12.2025 00:00:00
  • Zuletzt bearbeitet 18.12.2025 21:34:22

An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. When pages in a PDF are deleted via JavaScript, the application may fail to properly update internal states. Subsequent annotation management operations a...