PT-2026-97212 · Foxit · Foxit Pdf Reader+1

CVE-2026-91793

·

Published

2026-09-23

·

Updated

2026-09-23

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Foxit PDF Editor/Reader (affected versions not specified)
Description Opening a specially crafted PDF causes the application to execute scripts that modify annotation rich-text attributes containing malformed font data. During the subsequent reconstruction of the annotation appearance, the software accesses an object after it has been released, leading to a use-after-free condition and an application crash. A use-after-free is a memory corruption issue that occurs when an application continues to use a pointer after it has been freed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-91793
ZDI-26-729

Affected Products

Foxit Pdf Editor
Foxit Pdf Reader