Vulnerabilidades em Foxit Software Inc.
96 resultadosAnálise Vexday
Foxit Software apresenta volume preocupante com 36 vulnerabilidades publicadas nos últimos 90 dias em um portfólio de 63 CVEs, indicando atividade de descoberta ou divulgação intensificada. A fraqueza dominante (CWE-416 - use-after-free) é típica de aplicações complexas e pode resultar em execução de código, mas nenhuma está registrada em exploração ativa (KEV) e nenhuma atinge criticidade máxima. O padrão recente sugere maior exposição a risco durante processo de patching.
CVE-2025-66523MEDIUMReflected Cross-Site Scripting (XSS) Vulnerability in na1.foxitesign.foxit.com via Unsanitized URL ParametersEPSS 0.2%CVE-2026-18597HIGHBlind SSRF on Foxit PDF Services APIEPSS 0.2%CVE-2026-91791HIGHFoxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution VulnerabilityEPSS 0.2%CVE-2026-91815HIGHFoxit PDF Editor/Reader JPEG2000 Parsing Memory Corruption Remote Code Execution VulnerabilityEPSS 0.2%CVE-2026-91799HIGHFoxit Editor/Reader Array resetForm Use-After-Free VulnerabilityEPSS 0.2%CVE-2026-5942MEDIUMFoxit PDF Editor/Reader AcroForm Signature Use-After-Free VulnerabilityEPSS 0.2%CVE-2026-5943HIGHFoxit PDF Editor/Reader AcroForm Annotation Use-After-Free Remote Code Execution VulnerabilityEPSS 0.2%CVE-2025-66502MEDIUMFoxit pdfonline.foxit.com Stored Cross-Site Scripting in Page Templates FeatureEPSS 0.2%CVE-2025-66501MEDIUMFoxit pdfonline.foxit.com Stored Cross-Site Scripting in eSign Predefined Text FeatureEPSS 0.2%CVE-2025-66519MEDIUMFoxit pdfonline.foxit.com Stored Cross-Site Scripting in Layer Import FunctionalityEPSS 0.2%CVE-2025-66520MEDIUMFoxit pdfonline.foxit.com Stored Cross-Site Scripting in Portfolio SVG HandlingEPSS 0.2%CVE-2025-66522MEDIUMFoxit pdfonline.foxit.com Stored Cross-Site Scripting in Digital IDs Common Name FieldEPSS 0.2%CVE-2026-57256HIGHFoxit Editor/Reader List Box Format Use-After-Free VulnerabilityEPSS 0.2%CVE-2026-4947HIGHInsecure Direct Object Reference (IDOR) Leading to Signature Forgery in Foxit eSignEPSS 0.2%CVE-2026-91796MEDIUMFoxit PDF Editor/Reader importIcon NTLM Response Information Disclosure VulnerabilityEPSS 0.2%CVE-2026-91814MEDIUMSecurity vulnerability: Foxit PDF Editor/Reader Fails to Detect Modifications to Signed Documents Displaying Newly Added ContentEPSS 0.2%CVE-2026-13126HIGHFoxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution VulnerabilityEPSS 0.2%CVE-2026-57245HIGHFoxit PDF Editor/Reader Signature Hyperlink Use-After-Free VulnerabilityEPSS 0.2%CVE-2026-57238HIGHFoxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution VulnerabilityEPSS 0.2%CVE-2026-91805HIGHUse-after-free Vulnerability in Foxit PDF Editor/Reader Page-tree HandlingEPSS 0.2%