VendorsFoxitpdf_readerall versions
Vulnerabilities

Foxit PDF Reader

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

342CVEs
CVE-2021-34948
Foxit PDF Reader Square Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-07 · Analyzed
7.8EPSS 0.003
CVE-2021-34974
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-07 · Analyzed
7.8EPSS 0.003
CVE-2021-34975
Foxit PDF Reader transitionToState Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-07 · Analyzed
7.8EPSS 0.003
CVE-2021-34950
Foxit PDF Reader Annotation Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2024-05-07 · Analyzed
7.8EPSS 0.003
CVE-2021-34952
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-07 · Analyzed
7.8EPSS 0.003
CVE-2021-34954
Foxit PDF Editor StrikeOut Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-07 · Analyzed
7.8EPSS 0.003
CVE-2024-12752
Foxit PDF Reader AcroForm Memory Corruption Remote Code Execution Vulnerability
Published 2024-12-30 · Analyzed
7.8EPSS 0.003
CVE-2025-66494
Foxit PDF Reader PDF File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2025-12-19 · Analyzed
7.8EPSS 0.003
CVE-2025-66495
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2025-12-19 · Analyzed
7.8EPSS 0.003
CVE-2025-66493
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2025-12-19 · Analyzed
7.8EPSS 0.003
CVE-2025-66499
Foxit PDF Reader PDF Parsing Heap-Based Buffer Overflow Remote Code Execution Vulnerability
Published 2025-12-19 · Analyzed
7.8EPSS 0.003
CVE-2024-9244
Foxit PDF Reader Update Service Incorrect Permission Assignment Local Privilege Escalation Vulnerability
Published 2024-11-22 · Analyzed
7.8EPSS 0.003
CVE-2024-9245
Foxit PDF Reader Update Service Incorrect Permission Assignment Local Privilege Escalation Vulnerability
Published 2024-11-22 · Analyzed
7.8EPSS 0.003
CVE-2025-9326
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2025-09-02 · Analyzed
7.8EPSS 0.003
CVE-2025-9328
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2025-09-02 · Analyzed
7.8EPSS 0.003
CVE-2025-9329
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2025-09-02 · Analyzed
7.8EPSS 0.003
CVE-2026-3779
Foxit PDF Editor/Reader List Box Calculate Array Use-After-Free Vulnerability
Published 2026-04-01 · Analyzed
7.8EPSS 0.002
CVE-2025-66498
Foxit PDF Reader 3D Annotation Out-of-Bounds Memory Access Vulnerability
Published 2025-12-19 · Analyzed
7.8EPSS 0.002
CVE-2025-66497
Foxit PDF Reader 3D Annotation Out-of-Bounds Memory Access Vulnerability
Published 2025-12-19 · Analyzed
7.8EPSS 0.002
CVE-2025-66496
Foxit PDF Reader 3D Annotation Out-of-Bounds Memory Access Vulnerability
Published 2025-12-19 · Analyzed
7.8EPSS 0.002
CVE-2025-55314
An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. When pages in a PDF are deleted via JavaScript, the application may fail to properly update internal states. Subsequent annotation management operations assume these states are valid, causing dereference of invalid or released memory. This can lead to memory corruption, application crashes, and potentially allow an attacker to execute arbitrary code.
Published 2025-12-11 · Analyzed
7.8EPSS 0.002
CVE-2026-3775
Foxit PDF Editor/Reader Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
Published 2026-04-01 · Analyzed
7.8EPSS 0.002
CVE-2026-57240
Foxit PDF Editor/Reader Form Field Use-After-Free Remote Code Execution Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2025-9330
Foxit PDF Reader Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
Published 2025-09-02 · Analyzed
7.8EPSS 0.002
CVE-2025-55313
An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. They allow potential arbitrary code execution when processing crafted PDF files. The vulnerability stems from insufficient handling of memory allocation failures after assigning an extremely large value to a form field's charLimit property via JavaScript. This can result in memory corruption and may allow an attacker to execute arbitrary code by persuading a user to open a malicious file.
Published 2025-12-11 · Analyzed
7.8EPSS 0.002
CVE-2026-57256
Foxit Editor/Reader List Box Format Use-After-Free Vulnerability
Published 2026-07-08 · Modified
7.8EPSS 0.002
CVE-2026-3777
Use after free of view cache in Foxit PDF Editor/Reader
Published 2026-04-01 · Analyzed
7.8EPSS 0.002
CVE-2026-3780
Foxit PDF Editor/Reader Installer Uncontrolled Search Path Privilege Escalation
Published 2026-04-01 · Analyzed
7.8EPSS 0.002
CVE-2026-57260
Security vulnerability in Foxit PDF Editor/Reader — U3D Adobe Mesh Decompression (Type Confusion / Invalid Pointer Dereference)
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-57249
Foxit PDF Editor/Reader Annotation Use-After-Free Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-57242
Foxit PDF Editor/Reader Page Use-After-Free Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-5943
Foxit PDF Editor/Reader AcroForm Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2026-04-27 · Analyzed
7.8EPSS 0.002
CVE-2026-57250
Foxit PDF Editor/Reader Form Field Use-After-Free Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-57247
Foxit PDF Editor/Reader Field Use-After-Free Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-57248
Foxit PDF Editor/Reader Annotation Improper Release Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-13129
Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-13127
Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-13128
Foxit PDF Editor/Reader Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-57254
Foxit PDF Editor/Reader Annotation Type Confusion Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
CVE-2026-57238
Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2026-07-08 · Analyzed
7.8EPSS 0.002
← Prev6 / 9Next →