Vulnerability index

Browse CVEs

327 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2026-5941 Parsing logic flaws cause non-signature data to be misidentified as valid signatures when processing malformed form field hierarchies, leading to inv… Pdf Editor 14.0.4 / 2026.1.1+ Fix from $1,9502026-04-27 MEDIUM 5.5 CVE-2026-5937 Insufficient parameter verification leads to the occurrence of format errors in files, which will trigger an unhandled "std::invalid_argument" except… Pdf Editor 13.2.4 / 14.0.4+ Fix from $1,6002026-04-27 MEDIUM 5.5 CVE-2026-5938 Improper control flow management allows a crafted document action chain to cause modal dialog reentry on the main thread, resulting in UI freeze and … Pdf Editor 13.2.4 / 14.0.4+ Fix from $1,6002026-04-27 MEDIUM 5.5 CVE-2026-5939 A crafted XFA PDF can trigger a use-after-free condition during calculate event processing, causing the application to crash and resulting in an arbi… Pdf Editor 14.0.4 / 2026.1.1+ Fix from $1,6002026-04-27 MEDIUM 5.5 CVE-2026-5940 Calling a function that triggers a UI refresh after removing comments via a script may access an invalidated object, leading to program crashes. Pdf Editor 13.2.4 / 14.0.4+ Fix from $1,6002026-04-27 MEDIUM 5.5 CVE-2026-5942 Flaws in page lifecycle management allow document structure changes to desynchronize internal component states, causing subsequent operations to acce… Pdf Editor 13.2.4 / 14.0.4+ Fix from $1,6002026-04-27 CRITICAL 9.8 CVE-2026-5936 An attacker can control a server-side HTTP request by supplying a crafted URL, causing the server to initiate requests to arbitrary destinations. Thi… Pdf Services Api 2026-04-07+ Fix from $2,3002026-04-13 HIGH 7.8 CVE-2026-3779 The application's list box calculate array logic keeps stale references to page or form objects after they are deleted or re-created, which allows cr… Pdf Editor after 2025.3.0.69570 Fix from $1,9502026-04-01 HIGH 7.8 CVE-2026-3780 The application's installer runs with elevated privileges but resolves system executables and DLLs using untrusted search paths that can include user… Pdf Editor after 2025.3.0.35737 Fix from $1,9502026-04-01 HIGH 7.1 CVE-2026-4947 Addressed a potential insecure direct object reference (IDOR) vulnerability in the signing invitation acceptance process. Under certain conditions, t… Esign 2026-03-26+ Fix from $1,9502026-04-01 HIGH 7.8 CVE-2026-3775 The application's update service, when checking for updates, loads certain system libraries from a search path that includes directories writable by … Pdf Editor after 2025.3.0.35737 Fix from $1,9502026-04-01 HIGH 7.8 CVE-2026-3777 The application does not properly validate the lifetime and validity of internal view cache pointers after JavaScript changes the document zoom and p… Pdf Editor after 2025.3.0.69570 Fix from $1,9502026-04-01 HIGH 7.5 CVE-2026-3774 The application allows PDF JavaScript and document/print actions (such as WillPrint/DidPrint) to update form fields, annotations, or optional content… Pdf Editor after 2025.3.0.35737 Fix from $1,9502026-04-01 MEDIUM 5.5 CVE-2026-3776 The application does not validate the presence of required appearance (AP) data before accessing stamp annotation resources. When a PDF contains a st… Pdf Editor after 2025.3.0.69570 Fix from $1,6002026-04-01 MEDIUM 5.5 CVE-2026-3778 The application does not detect or guard against cyclic PDF object references while handling JavaScript in PDF. When pages and annotations are crafte… Pdf Editor after 2025.3.0.69570 Fix from $1,6002026-04-01 MEDIUM 5.4 CVE-2026-1592 Foxit PDF Editor Cloud (pdfonline) contains a stored cross-site scripting vulnerability in the Create New Layer feature. Unsanitized user input is em… Pdf Editor Cloud 2026-02-03+ Fix from $1,6002026-02-03 MEDIUM 5.4 CVE-2026-1591 Foxit PDF Editor Cloud (pdfonline) contains a stored cross-site scripting vulnerability in the file upload feature. A malicious username is embedded … Pdf Editor Cloud 2026-02-03+ Fix from $1,6002026-02-03 MEDIUM 6.1 CVE-2025-66523 URL parameters are directly embedded into JavaScript code or HTML attributes without proper encoding or sanitization. This allows attackers to inject… Esign 2026-01-16+ Fix from $1,6002026-01-20 MEDIUM 5.4 CVE-2025-66520 A stored cross-site scripting (XSS) vulnerability exists in the Portfolio feature of the Foxit PDF Editor cloud (pdfonline.foxit.com). User-supplied … Pdf Editor Cloud 2025-12-01+ Fix from $1,6002025-12-19 MEDIUM 5.4 CVE-2025-66521 A stored cross-site scripting (XSS) vulnerability exists in pdfonline.foxit.com within the Trusted Certificates feature. A crafted payload can be inj… Pdf Editor Cloud 2025-12-01+ Fix from $1,6002025-12-19 MEDIUM 5.4 CVE-2025-66522 A stored cross-site scripting (XSS) vulnerability exists in the Digital IDs functionality of the Foxit PDF Editor Cloud (pdfonline.foxit.com). The ap… Pdf Editor Cloud after 2025-12-01 Fix from $1,6002025-12-19 MEDIUM 5.4 CVE-2025-66501 A stored cross-site scripting (XSS) vulnerability exists in pdfonline.foxit.com within the Predefined Text feature of the Foxit eSign section. A craf… Pdf Editor Cloud 2025-12-01+ Fix from $1,6002025-12-19 MEDIUM 5.4 CVE-2025-66502 A stored cross-site scripting (XSS) vulnerability exists in pdfonline.foxit.com within the Page Templates feature. A crafted payload can be stored as… Pdf Editor Cloud 2025-12-01+ Fix from $1,6002025-12-19 MEDIUM 5.4 CVE-2025-66519 A stored cross-site scripting (XSS) vulnerability exists in pdfonline.foxit.com within the Layer Import functionality. A crafted payload can be injec… Pdf Editor Cloud 2025-12-01+ Fix from $1,6002025-12-19 MEDIUM 5.4 CVE-2025-66500 A stored cross-site scripting (XSS) vulnerability exists in webplugins.foxit.com. A postMessage handler fails to validate the message origin and dire… Pdf Editor Cloud 2025-12-01+ Fix from $1,6002025-12-19 HIGH 7.8 CVE-2025-66499 A heap-based buffer overflow vulnerability exists in the PDF parsing of Foxit PDF Reader when processing specially crafted JBIG2 data. An integer ove… Pdf Editor after 2025.2.1.69005 Fix from $1,9502025-12-19 HIGH 7.8 CVE-2025-66494 A use-after-free vulnerability exists in the PDF file parsing of Foxit PDF Reader before 2025.2.1, 14.0.1, and 13.2.1 on Windows. A PDF object manage… Pdf Editor after 2025.2.1.33197 Fix from $1,9502025-12-19 HIGH 7.8 CVE-2025-66495 A use-after-free vulnerability exists in the annotation handling of Foxit PDF Reader before 2025.2.1, 14.0.1, and 13.2.1 on Windows and MacOS. When o… Pdf Editor after 2025.2.1.69005 Fix from $1,9502025-12-19 HIGH 7.8 CVE-2025-66496 A memory corruption vulnerability exists in the 3D annotation handling of Foxit PDF Reader due to insufficient bounds checking when parsing PRC data.… Pdf Editor after 2025.2.1.33197 Fix from $1,9502025-12-19 HIGH 7.8 CVE-2025-66497 A memory corruption vulnerability exists in the 3D annotation handling of Foxit PDF Reader due to insufficient bounds checking when parsing PRC data.… Pdf Editor after 2025.2.1.69005 Fix from $1,9502025-12-19