CVE-2026-5939
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: 14984358-7092-470d-8f34-ade47a7658a2 (Secondary)
Description
A crafted XFA PDF can trigger a use-after-free condition during calculate event processing, causing the application to crash and resulting in an arbitrary code execution.
Affected (3)
Products: Foxit: Pdf Editor, Pdf Reader
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 14.0.0 to 14.0.4 | |
| Before 2026.1.1 |
References (1)
Source: 14984358-7092-470d-8f34-ade47a7658a2
Vendor Advisory
Timeline
No history available yet.