Foxit · Foxit Pdf Services Api · CVE-2026-18597
**Name of the Vulnerable Software and Affected Versions**
Foxit PDF Services API (affected versions not specified)
**Description**
The PDF creation feature allows referencing external files. An attacker can trigger a Server-Side Request Forgery (SSRF)—a flaw where the server is coerced into making unauthorized requests—by using URL redirection to bypass validation, which can result in information disclosure.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.