CVE-2026-57245
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: 14984358-7092-470d-8f34-ade47a7658a2 (Secondary)
Description
When the application opens a PDF, traverses and builds the annotation elements related to hyperlinks, it fails to validate the abnormal annotation relationships and field combinations. This results in the internal objects entering an invalid state. Eventually, during the destruction phase, an invalid pointer write occurred, causing the application to crash.
Affected (7)
Products: Foxit: Pdf Editor, Pdf Reader
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 13.2.4.24048 | |
| Up to 2026.1.1.36485 |
| Running on/with | Platform Versions |
|---|---|
Microsoft Windows | All versions |
References (1)
Source: 14984358-7092-470d-8f34-ade47a7658a2
Vendor Advisory
Timeline
No history available yet.