| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-5936 | Server-Side Request Forgery (SSRF) via URL Parameter in Foxit PDF Services API | Foxit Software Inc. | Foxit PDF Services API | High | 8.5 | 2026-04-13 06:57:40 | Deep Dive |
| CVE-2026-3774 | Self-Modifications Affecting Altered Printing and Redaction in Foxit PDF Editor | Foxit Software Inc. | Foxit PDF Editor | Medium | 4.7 | 2026-04-01 01:40:39 | Deep Dive |
| CVE-2026-3775 | Foxit PDF Editor/Reader Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability | Foxit Software Inc. | Foxit PDF Editor | High | 7.8 | 2026-04-01 01:40:37 | Deep Dive |
| CVE-2026-3776 | Null pointer dereference in Foxit PDF Editor/Reader when accessing stamp annotation | Foxit Software Inc. | Foxit PDF Editor | Medium | 5.5 | 2026-04-01 01:40:35 | Deep Dive |
| CVE-2026-3780 | Foxit PDF Editor/Reader Installer Uncontrolled Search Path Privilege Escalation | Foxit Software Inc. | Foxit PDF Reader | High | 7.3 | 2026-04-01 01:40:34 | Deep Dive |
| CVE-2026-3778 | Stack exhaustion caused by cyclic references in Foxit PDF Editor/Reader | Foxit Software Inc. | Foxit PDF Editor | Medium | 6.2 | 2026-04-01 01:40:32 | Deep Dive |
| CVE-2026-3779 | Foxit PDF Editor/Reader List Box Calculate Array Use-After-Free Vulnerability | Foxit Software Inc. | Foxit PDF Editor | High | 7.8 | 2026-04-01 01:40:30 | Deep Dive |
| CVE-2026-3777 | Use after free of view cache in Foxit PDF Editor/Reader | Foxit Software Inc. | Foxit PDF Editor | Medium | 5.5 | 2026-04-01 01:40:28 | Deep Dive |
| CVE-2026-4947 | Insecure Direct Object Reference (IDOR) Leading to Signature Forgery in Foxit eSign | Foxit Software Inc. | na1.foxitesign.foxit.com | High | 7.1 | 2026-04-01 01:40:26 | Deep Dive |
| CVE-2026-1592 | Stored XSS via Create New Layer Field found in Foxit PDF Editor Cloud | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2026-02-03 07:59:13 | Deep Dive |
| CVE-2026-1591 | Stored XSS via Attachments Feature in https://pdfonline.foxit.com/ | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2026-02-03 07:57:27 | Deep Dive |
| CVE-2025-66523 | Reflected Cross-Site Scripting (XSS) Vulnerability in na1.foxitesign.foxit.com via Unsanitized URL Parameters | Foxit Software Inc. | na1.foxitesign.foxit.com | Medium | 6.1 | 2026-01-20 06:51:35 | Deep Dive |
| CVE-2025-66522 | Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Digital IDs Common Name Field | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2025-12-19 07:34:29 | Deep Dive |
| CVE-2025-66521 | Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Trusted Certificates Feature | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2025-12-19 07:33:02 | Deep Dive |
| CVE-2025-66520 | Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Portfolio SVG Handling | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2025-12-19 07:30:21 | Deep Dive |
| CVE-2025-66519 | Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Layer Import Functionality | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2025-12-19 07:27:55 | Deep Dive |
| CVE-2025-66502 | Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Page Templates Feature | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2025-12-19 07:25:26 | Deep Dive |
| CVE-2025-66501 | Foxit pdfonline.foxit.com Stored Cross-Site Scripting in eSign Predefined Text Feature | Foxit Software Inc. | pdfonline.foxit.com | Medium | 6.3 | 2025-12-19 07:23:29 | Deep Dive |
| CVE-2025-66500 | Foxit webplugins.foxit.com Stored Cross-Site Scripting via postMessage Vulnerability | Foxit Software Inc. | webplugins.foxit.com | Medium | 6.3 | 2025-12-19 07:16:50 | Deep Dive |
| CVE-2025-66499 | Foxit PDF Reader PDF Parsing Heap-Based Buffer Overflow Remote Code Execution Vulnerability | Foxit Software Inc. | Foxit PDF Reader | High | 7.8 | 2025-12-19 07:11:50 | Deep Dive |