35 Total CVEs
35 AI Analyzed
0 CISA KEV
0 Critical

Profile

0% ended up actively exploited 0 of 35 added to CISA KEV
0% rated critical (CVSS 9.0+) 0 critical, 35 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

35 CVEs in the last 12 months

Products

  • Foxit PDF Editor8
  • Foxit PDF Editor and Foxit PDF Reader4
  • Foxit PDF Editor and Reader3
  • Foxit PDF Editor / Foxit PDF Reader3
  • Foxit PDF Editor / PDF Reader3
  • paths that1
  • path that1
  • Foxit PDF Services API1

9 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-35 of 35 CVEs
CVE-2026-5943
Analyzed
7.8
Foxit Software Multiple Products

Document structural anomalies caused inconsistencies between page element relationships and internal index states

2026-04-28
CVE-2026-5941
Analyzed
7.8
Foxit Software Multiple Products

Parsing logic flaws cause non-signature data to be misidentified as valid signatures when processing malformed form field hierarchies, leading to inva...

2026-04-28
CVE-2026-5940
Analyzed
7.8
Foxit Software Multiple Products

Calling a function that triggers a UI refresh after removing comments via a script may access an invalidated object, leading to program crashes

2026-04-28
CVE-2026-5936
Analyzed
8.5
Foxit Software Multiple Products

An attacker can control a server-side HTTP request by supplying a crafted URL, causing the server to initiate requests to arbitrary destinations

2026-04-13
CVE-2026-57260
Analyzed
7.8
Foxit Software Foxit PDF Editor and Foxit PDF Reader

The application opened a PDF file containing an abnormal Unity 3D object

2026-07-08
CVE-2026-57256
Analyzed
7.8
Foxit Software Foxit PDF Editor

When the application opens a PDF and executes JavaScript, it performs abnormal operations on the list box field, and this operation is repeated after...

2026-07-08
CVE-2026-57254
Analyzed
7.8
Foxit Software Foxit PDF Editor and Foxit PDF Reader

There is an abnormal annotation within the PDF that is referenced by other objects

2026-07-08
CVE-2026-57252
Analyzed
7.8
Foxit Software Foxit PDF Editor

When the application opens a PDF file, during the process of JavaScript deleting pages and removing attachment annotations, it will cause the attachme...

2026-07-08
CVE-2026-57251
Analyzed
7.8
Foxit Software Foxit PDF Editor and Foxit PDF Reader

The application opens a PDF, but the cloud-like appearance of the construction process lacks proper setting of an upper limit and consistency checks

2026-07-08
CVE-2026-57250
Analyzed
7.8
Foxit Software Foxit PDF Editor and Reader

When the application opens a PDF and JavaScript resets the form fields, the script re-enters the interface

2026-07-08
CVE-2026-57249
Analyzed
7.8
Foxit Software Foxit PDF Editor and Foxit PDF Reader

After the application opened the PDF file, the script first reset the annotation status, then triggered the reset form event by additional action

2026-07-08
CVE-2026-57248
Analyzed
7.8
Foxit Software Foxit PDF Editor and Reader

When the application opens a PDF file and JavaScript writes annotation attributes, there is a lack of sufficient object type and argument checks

2026-07-08
CVE-2026-57247
Analyzed
7.8
Foxit Software Foxit PDF Editor / Foxit PDF Reader

The application re-enters the document structure via field processing and deletes the current page, and then continues using the field objects obtaine...

2026-07-08
CVE-2026-57246
Analyzed
7.8
Foxit Software Foxit PDF Editor and Reader

When dealing with abnormally constructed objects, there is a lack of argument validation; JavaScript triggers signature verification, but the signatur...

2026-07-08
CVE-2026-57245
Analyzed
7.8
Foxit Software Foxit PDF Editor / Foxit PDF Reader

When the application opens a PDF, traverses and builds the annotation elements related to hyperlinks, it fails to validate the abnormal annotation rel...

2026-07-08
CVE-2026-57244
Analyzed
7.8
Foxit Software Foxit PDF Editor

After JavaScript resetting the form, the synchronization process lacks re-entry protection and object lifecycle verification, resulting in the failure...

2026-07-08
CVE-2026-57242
Analyzed
7.8
Foxit Software Foxit PDF Editor

The application opens the PDF, and JavaScript modifies the form

2026-07-08
CVE-2026-57240
Analyzed
7.8
Foxit Software Foxit PDF Editor

When the application opens a PDF file and JavaScript deletes the PDF fields, the subsequent logic still uses the old field pointers, resulting in inva...

2026-07-08
CVE-2026-57239
Analyzed
8.2
Foxit Software Foxit PDF Editor

The user-controllable executable files will be directly executed by high-privilege processes, allowing low-privilege users to have the opportunity to...

2026-07-08
CVE-2026-57238
Analyzed
7.8
Foxit Software Foxit PDF Editor / PDF Reader

After the application opened the PDF, JavaScript deleted the form field object

2026-07-08
CVE-2026-57237
Analyzed
7.8
Foxit Software Foxit PDF Editor / PDF Reader

When the application opens a PDF and JavaScript modifies the properties of form fields, it causes the state of the underlying objects referenced by th...

2026-07-08
CVE-2026-3780
Analyzed
7.3
Foxit Software paths that

The application's installer runs with elevated privileges but resolves system executables and DLLs using untrusted search paths that can include user-...

2026-04-01
CVE-2026-3779
Analyzed
7.8
Foxit Software Multiple Products

The application's list box calculate array logic keeps stale references to page or form objects after they are deleted or re-created, which allows cra...

2026-04-01
CVE-2026-3775
Analyzed
7.8
Foxit Software path that

The application's update service, when checking for updates, loads certain system libraries from a search path that includes directories writable by l...

2026-04-01
CVE-2026-18597
Analyzed
8.5
Foxit Software Foxit PDF Services API

The PDF creation feature of Foxit PDF Services API supports referencing external files

2026-08-06
CVE-2026-13129
Analyzed
7.8
Foxit Software Foxit PDF Editor / PDF Reader

When the application opens a PDF file, JavaScript uses the damaged field tree to trigger field traversal, resulting in the program holding an invalid...

2026-07-08
CVE-2026-13128
Analyzed
7.8
Foxit Software Foxit PDF Editor

Embedding JavaScript within a PDF file will cause the page to be deleted

2026-07-08
CVE-2026-13127
Analyzed
7.8
Foxit Software Foxit PDF Editor / Foxit PDF Reader

The application opens the PDF file

2026-07-08
CVE-2026-13126
Analyzed
7.8
Foxit Software Foxit PDF Editor

The embedded JavaScript in the PDF deleted the pages, making the object invalid

2026-07-08
CVE-2026-12057
Analyzed
8.6
Foxit Software Foxit AI

When the application executes the JavaScript script embedded in the PDF within the sandbox, it fails to intercept some dangerous interfaces, which all...

2026-06-16
CVE-2025-66499
Analyzed
7.8
Foxit Software Multiple Products

A heap-based buffer overflow vulnerability exists in the PDF parsing of Foxit PDF Reader when processing specially crafted JBIG2 data

2025-12-20
CVE-2025-66495
Analyzed
7.8
Foxit Software Multiple Products

A use-after-free vulnerability exists in the annotation handling of Foxit PDF Reader before 2025

2025-12-20
CVE-2025-66494
Analyzed
7.8
Foxit Software Multiple Products

A use-after-free vulnerability exists in the PDF file parsing of Foxit PDF Reader before 2025

2025-12-20
CVE-2025-66493
Analyzed
7.8
Foxit Software Multiple Products

A use-after-free vulnerability exists in the AcroForm handling of Foxit PDF Reader and Foxit PDF Editor before 2025

2025-12-20
CVE-2025-13941
Analyzed
8.8
Foxit Software Multiple Products

A local privilege escalation vulnerability exists in the Foxit PDF Reader/Editor Update Service

2025-12-19