CVE-2026-12057
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
When the application executes the JavaScript script embedded in the PDF within the sandbox, it fails to intercept some dangerous interfaces, which allows remote scripts to be loaded, resulting in arbitrary code execution.
Affected (1)
References (1)
Source: 14984358-7092-470d-8f34-ade47a7658a2
Vendor Advisory
Timeline
No history available yet.