Foxit pdf editor是中国Foxit公司的一款PDF编辑软件。 Foxit PDF Editor 2026.1.1及之前版本、14.0.4及之前版本和13.2.4及之前版本存在输入验证错误漏洞,该漏洞源于输入验证错误,可能导致恶意文档在伪装成PDF格式之后,通过构造恶意外部实体指向本地路径,从而允许访问用户权限范围内的任意本地文件。以下版本受到影响:2026.1.1及之前版本、14.0.4及之前版本和13.2.4及之前版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Foxit Software Inc. | Foxit PDF Editor | Versions 2026.1.1 and earlier |
affected |
Versions 14.0.4 and earlier |
affected | ||
Versions 13.2.4 and earlier |
affected | ||
| Foxit Software Inc. | Foxit PDF Reader | Versions 2026.1.1 and earlier |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Foxit Software Inc. | Foxit PDF Editor | Versions 2026.1.1 and earlier | - |
|
| Foxit Software Inc. | Foxit PDF Reader | Versions 2026.1.1 and earlier | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-57239 | 8.2 HIGH | Foxit PDF Editor/Reader Local Privilege Escalation |
| CVE-2026-57245 | 7.8 HIGH | Foxit PDF Editor/Reader Signature Hyperlink Use-After-Free Vulnerability |
| CVE-2026-13127 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-13129 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-13128 | 7.8 HIGH | Foxit PDF Editor/Reader Doc Object Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-13126 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-57242 | 7.8 HIGH | Foxit PDF Editor/Reader Page Use-After-Free Vulnerability |
| CVE-2026-57240 | 7.8 HIGH | Foxit PDF Editor/Reader Form Field Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-57254 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Type Confusion Vulnerability |
| CVE-2026-57250 | 7.8 HIGH | Foxit PDF Editor/Reader Form Field Use-After-Free Vulnerability |
| CVE-2026-57252 | 7.8 HIGH | Foxit PDF Editor/Reader AcroForm Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-57248 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Improper Release Vulnerability |
| CVE-2026-57247 | 7.8 HIGH | Foxit PDF Editor/Reader Field Use-After-Free Vulnerability |
| CVE-2026-57249 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Use-After-Free Vulnerability |
| CVE-2026-57244 | 7.8 HIGH | Foxit PDF Editor/Reader Form Control Use-After-Free Vulnerability |
| CVE-2026-57246 | 7.8 HIGH | Foxit PDF Editor/Reader Signature Buffer Overflow Vulnerability |
| CVE-2026-57251 | 7.8 HIGH | Foxit PDF Editor/Reader Cloud Appearance Buffer Overflow Vulnerability |
| CVE-2026-57237 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-57260 | 7.8 HIGH | Security vulnerability in Foxit PDF Editor/Reader — U3D Adobe Mesh Decompression (Type Con |
| CVE-2026-57238 | 7.8 HIGH | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability |
Showing top 20 of 28 CVEs. View all on vendor page → →
No comments yet