{"schema_version":1,"title":"Foxit PDF Editor vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 34 vulnerabilities in Foxit PDF Editor: 31 in the last 7 days and 33 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-91818, was published on 23 September 2026.","url":"https://junglewise.ai/threats/technologies/pdf-editor","json_url":"https://junglewise.ai/threats/technologies/pdf-editor.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/pdf-editor","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":26,"all_time":34,"critical":0,"exploited":0,"last_7_days":31,"last_30_days":31,"last_90_days":33,"last_365_days":34},"latest":[{"cve":"CVE-2026-91818","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91818-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Editor use-after-free in JavaScript annotation handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:14.123+00:00","url":"https://junglewise.ai/threats/cve-2026-91818-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader"},{"cve":"CVE-2026-91817","cvss":6.1,"epss":0.0011,"slug":"cve-2026-91817-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf","title":"Foxit PDF Editor heap-based out-of-bounds read in JavaScript string handling","severity":"medium","exploited":false,"published_at":"2026-09-23T08:17:14.01+00:00","url":"https://junglewise.ai/threats/cve-2026-91817-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf"},{"cve":"CVE-2026-91816","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91816-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Editor use-after-free in annotation handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.9+00:00","url":"https://junglewise.ai/threats/cve-2026-91816-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader"},{"cve":"CVE-2026-91815","cvss":7.8,"epss":0.0013,"slug":"cve-2026-91815-foxit-pdf-editor-reader-does-not-perform-sufficient-verification","title":"Foxit PDF Editor/Reader out-of-bounds write in JPEG2000 decoding","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.79+00:00","url":"https://junglewise.ai/threats/cve-2026-91815-foxit-pdf-editor-reader-does-not-perform-sufficient-verification"},{"cve":"CVE-2026-91814","cvss":5.3,"epss":0.0011,"slug":"cve-2026-91814-a-signature-validation-vulnerability-exists-in-foxit-pdf-editor","title":"Foxit PDF Editor and Reader signature validation bypass in incremental updates","severity":"medium","exploited":false,"published_at":"2026-09-23T08:17:13.673+00:00","url":"https://junglewise.ai/threats/cve-2026-91814-a-signature-validation-vulnerability-exists-in-foxit-pdf-editor"},{"cve":"CVE-2026-91813","cvss":8.8,"epss":0.0009,"slug":"cve-2026-91813-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism","title":"Foxit PDF Reader/Editor update mechanism privilege escalation","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.55+00:00","url":"https://junglewise.ai/threats/cve-2026-91813-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism"},{"cve":"CVE-2026-91812","cvss":7.9,"epss":0.0008,"slug":"cve-2026-91812-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism","title":"Foxit PDF Editor/Reader update mechanism certificate validation bypass","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.423+00:00","url":"https://junglewise.ai/threats/cve-2026-91812-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism"},{"cve":"CVE-2026-91811","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91811-a-heap-based-out-of-bounds-write-vulnerability-exists-in-foxit","title":"Foxit PDF Reader heap out-of-bounds write in PRC parser","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.307+00:00","url":"https://junglewise.ai/threats/cve-2026-91811-a-heap-based-out-of-bounds-write-vulnerability-exists-in-foxit"},{"cve":"CVE-2026-91810","cvss":6.1,"epss":0.0011,"slug":"cve-2026-91810-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf","title":"Foxit PDF Reader heap out-of-bounds read in image mask handling","severity":"medium","exploited":false,"published_at":"2026-09-23T08:17:13.19+00:00","url":"https://junglewise.ai/threats/cve-2026-91810-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf"},{"cve":"CVE-2026-91809","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91809-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Reader use-after-free in form field handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.07+00:00","url":"https://junglewise.ai/threats/cve-2026-91809-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader"},{"cve":"CVE-2026-91808","cvss":6.1,"epss":0.0011,"slug":"cve-2026-91808-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf","title":"Foxit PDF Editor heap out-of-bounds read in image handling","severity":"medium","exploited":false,"published_at":"2026-09-23T08:17:12.93+00:00","url":"https://junglewise.ai/threats/cve-2026-91808-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf"},{"cve":"CVE-2026-91807","cvss":6.1,"epss":0.0011,"slug":"cve-2026-91807-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf","title":"Foxit PDF Reader heap-based out-of-bounds read in image soft-mask parsing","severity":"medium","exploited":false,"published_at":"2026-09-23T08:17:12.807+00:00","url":"https://junglewise.ai/threats/cve-2026-91807-a-heap-based-out-of-bounds-read-vulnerability-exists-in-foxit-pdf"},{"cve":"CVE-2026-91806","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91806-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Editor and Reader use-after-free in form field handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.693+00:00","url":"https://junglewise.ai/threats/cve-2026-91806-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader"},{"cve":"CVE-2026-91805","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91805-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Editor use-after-free in page-tree handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.583+00:00","url":"https://junglewise.ai/threats/cve-2026-91805-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader"},{"cve":"CVE-2026-91804","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91804-a-heap-based-out-of-bounds-write-vulnerability-exists-in-foxit","title":"Foxit PDF Editor and Reader heap overflow in Circle annotation rendering","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.477+00:00","url":"https://junglewise.ai/threats/cve-2026-91804-a-heap-based-out-of-bounds-write-vulnerability-exists-in-foxit"},{"cve":"CVE-2026-91803","cvss":8.8,"epss":0.0012,"slug":"cve-2026-91803-a-local-privilege-escalation-vulnerability-exists-in-the-updater","title":"Foxit PDF Editor privilege escalation in updater via DLL loading","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.363+00:00","url":"https://junglewise.ai/threats/cve-2026-91803-a-local-privilege-escalation-vulnerability-exists-in-the-updater"},{"cve":"CVE-2026-91802","cvss":7.8,"epss":0.0012,"slug":"cve-2026-91802-a-heap-based-out-of-bounds-write-vulnerability-exists-in-foxit","title":"Foxit PDF Editor heap-based buffer overflow in WebP decoding","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.247+00:00","url":"https://junglewise.ai/threats/cve-2026-91802-a-heap-based-out-of-bounds-write-vulnerability-exists-in-foxit"},{"cve":"CVE-2026-91801","cvss":7.8,"epss":0.0015,"slug":"cve-2026-91801-a-path-traversal-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Editor path traversal in embedded resource handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.133+00:00","url":"https://junglewise.ai/threats/cve-2026-91801-a-path-traversal-vulnerability-exists-in-foxit-pdf-editor-reader"},{"cve":"CVE-2026-91800","cvss":8.8,"epss":0.001,"slug":"cve-2026-91800-a-local-privilege-escalation-vulnerability-exists-in-the","title":"Foxit PDF Editor privilege escalation in installer on macOS","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.023+00:00","url":"https://junglewise.ai/threats/cve-2026-91800-a-local-privilege-escalation-vulnerability-exists-in-the"},{"cve":"CVE-2026-91799","cvss":7.8,"epss":0.0013,"slug":"cve-2026-91799-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Editor use-after-free in JavaScript array handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.907+00:00","url":"https://junglewise.ai/threats/cve-2026-91799-a-use-after-free-vulnerability-exists-in-foxit-pdf-editor-reader"},{"cve":"CVE-2026-91798","cvss":8.8,"epss":0.001,"slug":"cve-2026-91798-a-local-privilege-escalation-vulnerability-exists-in-the-update","title":"Foxit PDF Editor and Reader privilege escalation in update daemon","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.793+00:00","url":"https://junglewise.ai/threats/cve-2026-91798-a-local-privilege-escalation-vulnerability-exists-in-the-update"},{"cve":"CVE-2026-91797","cvss":7.8,"epss":0.0022,"slug":"cve-2026-91797-foxit-pdf-editor-reader-failed-to-validate-the-directory","title":"Foxit PDF Editor/Reader directory traversal in attachment file name","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.683+00:00","url":"https://junglewise.ai/threats/cve-2026-91797-foxit-pdf-editor-reader-failed-to-validate-the-directory"},{"cve":"CVE-2026-91796","cvss":6.1,"epss":0.0012,"slug":"cve-2026-91796-the-interface-of-foxit-pdf-editor-reader-lacks-the-permission","title":"Foxit PDF Editor and Reader credential hash leakage via SMB","severity":"medium","exploited":false,"published_at":"2026-09-23T08:17:11.57+00:00","url":"https://junglewise.ai/threats/cve-2026-91796-the-interface-of-foxit-pdf-editor-reader-lacks-the-permission"},{"cve":"CVE-2026-91795","cvss":7.8,"epss":0.0009,"slug":"cve-2026-91795-foxit-pdf-editor-reader-s-fileopen-plugin-did-not-adequately","title":"Foxit PDF Editor and Reader FileOpen plugin encryption metadata validation bypass","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.453+00:00","url":"https://junglewise.ai/threats/cve-2026-91795-foxit-pdf-editor-reader-s-fileopen-plugin-did-not-adequately"},{"cve":"CVE-2026-91794","cvss":7.8,"epss":0.0016,"slug":"cve-2026-91794-an-out-of-bounds-write-vulnerability-exists-in-the-pdf-rendering","title":"Foxit PDF Editor out-of-bounds write in color space processing","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.337+00:00","url":"https://junglewise.ai/threats/cve-2026-91794-an-out-of-bounds-write-vulnerability-exists-in-the-pdf-rendering"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":31}],"related":[{"name":"Foxit PDF Reader","slug":"pdf-reader","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/pdf-reader"}],"technology":{"hub":true,"name":"Foxit PDF Editor","slug":"pdf-editor","vendor":{"name":"Foxit","slug":"foxit","url":"https://junglewise.ai/threats/vendors/foxit"},"aliases":[],"category":"application","homepage":"https://www.foxit.com/pdf-editor/","description":"Software for creating, editing, and managing PDF documents.","url":"https://junglewise.ai/threats/technologies/pdf-editor"},"most_severe":[{"cve":"CVE-2026-91803","cvss":8.8,"epss":0.0012,"slug":"cve-2026-91803-a-local-privilege-escalation-vulnerability-exists-in-the-updater","title":"Foxit PDF Editor privilege escalation in updater via DLL loading","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.363+00:00","url":"https://junglewise.ai/threats/cve-2026-91803-a-local-privilege-escalation-vulnerability-exists-in-the-updater"},{"cve":"CVE-2026-91800","cvss":8.8,"epss":0.001,"slug":"cve-2026-91800-a-local-privilege-escalation-vulnerability-exists-in-the","title":"Foxit PDF Editor privilege escalation in installer on macOS","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.023+00:00","url":"https://junglewise.ai/threats/cve-2026-91800-a-local-privilege-escalation-vulnerability-exists-in-the"},{"cve":"CVE-2026-91798","cvss":8.8,"epss":0.001,"slug":"cve-2026-91798-a-local-privilege-escalation-vulnerability-exists-in-the-update","title":"Foxit PDF Editor and Reader privilege escalation in update daemon","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.793+00:00","url":"https://junglewise.ai/threats/cve-2026-91798-a-local-privilege-escalation-vulnerability-exists-in-the-update"},{"cve":"CVE-2026-91813","cvss":8.8,"epss":0.0009,"slug":"cve-2026-91813-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism","title":"Foxit PDF Reader/Editor update mechanism privilege escalation","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.55+00:00","url":"https://junglewise.ai/threats/cve-2026-91813-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism"},{"cve":"CVE-2026-12057","cvss":8.6,"slug":"cve-2026-12057-foxit-pdf-editor-and-reader-arbitrary-code-execution-via","title":"Foxit PDF Editor and Reader arbitrary code execution via JavaScript sandbox bypass","severity":"high","exploited":false,"published_at":"2026-06-15T12:16:23.05+00:00","url":"https://junglewise.ai/threats/cve-2026-12057-foxit-pdf-editor-and-reader-arbitrary-code-execution-via"},{"cve":"CVE-2026-91812","cvss":7.9,"epss":0.0008,"slug":"cve-2026-91812-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism","title":"Foxit PDF Editor/Reader update mechanism certificate validation bypass","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:13.423+00:00","url":"https://junglewise.ai/threats/cve-2026-91812-a-vulnerability-in-foxit-pdf-editor-reader-s-update-mechanism"},{"cve":"CVE-2026-91797","cvss":7.8,"epss":0.0022,"slug":"cve-2026-91797-foxit-pdf-editor-reader-failed-to-validate-the-directory","title":"Foxit PDF Editor/Reader directory traversal in attachment file name","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.683+00:00","url":"https://junglewise.ai/threats/cve-2026-91797-foxit-pdf-editor-reader-failed-to-validate-the-directory"},{"cve":"CVE-2026-91794","cvss":7.8,"epss":0.0016,"slug":"cve-2026-91794-an-out-of-bounds-write-vulnerability-exists-in-the-pdf-rendering","title":"Foxit PDF Editor out-of-bounds write in color space processing","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:11.337+00:00","url":"https://junglewise.ai/threats/cve-2026-91794-an-out-of-bounds-write-vulnerability-exists-in-the-pdf-rendering"},{"cve":"CVE-2026-91789","cvss":7.8,"epss":0.0016,"slug":"cve-2026-91789-foxit-pdf-editor-reader-s-u3d-gif-texture-decoding-path-contained","title":"Foxit PDF Reader/Editor out-of-bounds write in U3D/GIF decoding","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:10.753+00:00","url":"https://junglewise.ai/threats/cve-2026-91789-foxit-pdf-editor-reader-s-u3d-gif-texture-decoding-path-contained"},{"cve":"CVE-2026-91801","cvss":7.8,"epss":0.0015,"slug":"cve-2026-91801-a-path-traversal-vulnerability-exists-in-foxit-pdf-editor-reader","title":"Foxit PDF Editor path traversal in embedded resource handling","severity":"high","exploited":false,"published_at":"2026-09-23T08:17:12.133+00:00","url":"https://junglewise.ai/threats/cve-2026-91801-a-path-traversal-vulnerability-exists-in-foxit-pdf-editor-reader"}],"generated_at":"2026-09-26T12:07:00.15149+00:00"}