VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

15639 CVEsRSS

CVE-2026-91812High· 7.9
5d ago

A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows man-in-the-middle attackers to bypass certificate validation and package integrity checks, potentially enabling arbitrary code execution with system privileges.

A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows man-in-the-middle attackers to bypass certificate validation and package integrity checks, potentially enabling arbitrary code execution with system privileges.

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.08%via NVD
CVE-2026-91811High· 7.8
5d ago

A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to insufficient validation of vertex indices in triangular fan texture meshes

A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to insufficient validation of vertex indices in triangular fan texture meshes. Successful exploitation could result in memory corruption an…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91810Medium· 6.1
5d ago

A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF image masks

A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF image masks. Inconsistent image metadata may cause incorrect alpha-channel processing during rendering, resulting in an out-of-bo…

▾ SunlitFoxit Software Inc. · Foxit PDF EditorEPSS 0.11%via NVD
CVE-2026-91809High· 7.8
5d ago

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF form fields

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF form fields. Improper validation during field-name traversal may cause the application to access a released object, resulting in an application …

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91808Medium· 6.1
5d ago

A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor Reader’s handling of PDF image objects with inconsistent compression metadata

A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor Reader’s handling of PDF image objects with inconsistent compression metadata. Insufficient validation during image decoding may result in an undersized buffer and …

▾ SunlitFoxit Software Inc. · Foxit PDF EditorEPSS 0.11%via NVD
CVE-2026-91807Medium· 6.1
5d ago

A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed image soft-mask data

A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed image soft-mask data. Insufficient validation of the soft-mask data attribute during image parsing may cause an arithmetic underflow,…

▾ SunlitFoxit Software Inc. · Foxit PDF EditorEPSS 0.11%via NVD
CVE-2026-91806High· 7.8
5d ago

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of PDF form fields

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of PDF form fields. Embedded JavaScript may access form-field references after the corresponding fields have been released, resulting in an application crash.

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91805High· 7.8
5d ago

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s PDF page-tree handling

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s PDF page-tree handling. A specially crafted PDF can trigger page-structure changes during rendering, causing the application to access released page objects and resulting…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91804High· 7.8
5d ago

A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s rendering of Circle annotations with malformed Cloudy appearance streams in specially crafted PDF files

A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s rendering of Circle annotations with malformed Cloudy appearance streams in specially crafted PDF files. Insufficient validation of the appearance geometr…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91803High· 8.8
5d ago

A local privilege escalation vulnerability exists in the updater of Foxit PDF Editor/Reader due to unsafe loading of dynamic-link libraries from a user-writable directory during high-privilege operations

A local privilege escalation vulnerability exists in the updater of Foxit PDF Editor/Reader due to unsafe loading of dynamic-link libraries from a user-writable directory during high-privilege operations. A local attacker could exploit t…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91802High· 7.8
5d ago

A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s WebP image decoding due to improper handling of bitmap stride and target buffer formats

A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s WebP image decoding due to improper handling of bitmap stride and target buffer formats. Successful exploitation could result in an application crash.

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91801High· 7.8
5d ago

A path traversal vulnerability exists in Foxit PDF Editor/Reader's handling of embedded PDF resources

A path traversal vulnerability exists in Foxit PDF Editor/Reader's handling of embedded PDF resources. Insufficient validation of resource file paths may allow files to be written outside their intended locations, potentially enabling ar…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.15%via NVD
CVE-2026-91800High· 8.8
5d ago

A local privilege escalation vulnerability exists in the installer of Foxit PDF Editor for macOS due to insufficient validation of a user-modifiable configuration value during high-privilege upgrades

A local privilege escalation vulnerability exists in the installer of Foxit PDF Editor for macOS due to insufficient validation of a user-modifiable configuration value during high-privilege upgrades. A local attacker could exploit this …

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.10%via NVD
CVE-2026-91799High· 7.8
5d ago

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of JavaScript array objects

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of JavaScript array objects. A specially crafted PDF may cause the application to access a released object during array processing, potentially resulting in appl…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.13%via NVD
CVE-2026-91798High· 8.8
5d ago

A local privilege escalation vulnerability exists in the update daemon of Foxit PDF Editor/Reader due to an insecure permission configuration that allows the configuration file to be modified by regular users, which may lead to arbitrary…

A local privilege escalation vulnerability exists in the update daemon of Foxit PDF Editor/Reader due to an insecure permission configuration that allows the configuration file to be modified by regular users, which may lead to arbitrary…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.10%via NVD
CVE-2026-91797High· 7.8
5d ago

Foxit PDF Editor/Reader failed to validate the directory traversal path in the attachment file name, resulting in malicious attachments being able to be written to directories outside the expected secure area when the PDF is opened.

Foxit PDF Editor/Reader failed to validate the directory traversal path in the attachment file name, resulting in malicious attachments being able to be written to directories outside the expected secure area when the PDF is opened.

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.21%via NVD
CVE-2026-91796Medium· 6.1
5d ago

The interface of Foxit PDF Editor/Reader lacks the permission verification for secure reading mode, which allows specially crafted PDFs to trigger external SMB authentication without any security prompts and thereby leak the hash of the …

The interface of Foxit PDF Editor/Reader lacks the permission verification for secure reading mode, which allows specially crafted PDFs to trigger external SMB authentication without any security prompts and thereby leak the hash of the …

▾ SunlitFoxit Software Inc. · Foxit PDF EditorEPSS 0.12%via NVD
CVE-2026-91795High· 7.8
5d ago

Foxit PDF Editor/Reader's FileOpen plugin did not adequately validate certain encryption metadata in specially crafted PDF files

Foxit PDF Editor/Reader's FileOpen plugin did not adequately validate certain encryption metadata in specially crafted PDF files. This could leave an internal pointer in an invalid state, resulting in chained read and write access violat…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.08%via NVD
CVE-2026-91794High· 7.8
5d ago

An out-of-bounds write vulnerability exists in the PDF rendering process of Foxit PDF Editor/Reader due to insufficient consistency and boundary validation when processing malformed color space data, which may cause the program to crash …

An out-of-bounds write vulnerability exists in the PDF rendering process of Foxit PDF Editor/Reader due to insufficient consistency and boundary validation when processing malformed color space data, which may cause the program to crash …

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.16%via NVD
CVE-2026-91793High· 7.8
5d ago

When opening a specially crafted PDF, Foxit PDF Editor/Reader executes scripts that modify annotation rich-text attributes containing malformed font data

When opening a specially crafted PDF, Foxit PDF Editor/Reader executes scripts that modify annotation rich-text attributes containing malformed font data. During subsequent annotation appearance reconstruction, it accesses an object afte…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.13%via NVD
CVE-2026-91792High· 7.8
5d ago

When processing a specially crafted PDF, Foxit PDF Editor/Reader may perform reentrant zoom and layout operations through page- and annotation-related JavaScript actions

When processing a specially crafted PDF, Foxit PDF Editor/Reader may perform reentrant zoom and layout operations through page- and annotation-related JavaScript actions. This can cause the application to access page objects after they h…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.13%via NVD
CVE-2026-91791High· 7.8
5d ago

When processing a specially crafted PDF file, Foxit PDF Editor/Reader may encounter a reentrant execution condition involving JavaScript triggered by page-visibility events

When processing a specially crafted PDF file, Foxit PDF Editor/Reader may encounter a reentrant execution condition involving JavaScript triggered by page-visibility events. This can cause the application to access a released page-view o…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.14%via NVD
CVE-2026-91790High· 7.8
5d ago

When rendering the page image, Foxit PDF Editor/Reader fails to perform validation on image objects whose optional content attributes are malformed

When rendering the page image, Foxit PDF Editor/Reader fails to perform validation on image objects whose optional content attributes are malformed. As a result, the program may access an already-freed internal data structure, triggering…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.13%via NVD
CVE-2026-91789High· 7.8
5d ago

Foxit PDF Editor/Reader’s U3D/GIF texture decoding path contained insufficient validation of image dimensions and related size information

Foxit PDF Editor/Reader’s U3D/GIF texture decoding path contained insufficient validation of image dimensions and related size information. Under certain conditions, this could lead to an incorrectly sized memory allocation and a subsequ…

▾ TwilightFoxit Software Inc. · Foxit PDF EditorEPSS 0.16%via NVD
CVE-2026-91788Medium· 4.7
5d ago

When implementing the JavaScript interface, Foxit PDF Editor/Reader did not perform the attribute authorization checks required by the specification

When implementing the JavaScript interface, Foxit PDF Editor/Reader did not perform the attribute authorization checks required by the specification. As a result, a trusted malicious PDF could potentially access sensitive content from ot…

▾ SunlitFoxit Software Inc. · Foxit PDF EditorEPSS 0.10%via NVD
CVE-2026-50228Medium· 6.1
5d ago

An unauthenticated local attacker can connect to the Electron DevTools endpoint exposed by Acer NitroSense software (versions up to and including 5.2.63) on localhost TCP port 9993

An unauthenticated local attacker can connect to the Electron DevTools endpoint exposed by Acer NitroSense software (versions up to and including 5.2.63) on localhost TCP port 9993. Because Chromium remote debugging is enabled in the pro…

▾ SunlitAcer · NitroSense V5EPSS 0.13%via NVD
CVE-2026-50227Medium· 6.1
5d ago

An unauthenticated local attacker can connect to the MQTT broker over its localhost WebSocket endpoint in Acer NitroSense software (versions up to and including 5.2.62)

An unauthenticated local attacker can connect to the MQTT broker over its localhost WebSocket endpoint in Acer NitroSense software (versions up to and including 5.2.62). This allows the attacker to invoke exposed ddsc RPC functions, incl…

▾ SunlitAcer · NitroSense V5EPSS 0.35%via NVD
CVE-2026-82331Critical· 9.8
5d ago

Improper link resolution before file access ('link following') vulnerability in the `tar` source plugin of Apache BuildStream running on Python < 3.12 allows malicious source tarballs to write files on the host, with the privileges of th…

Improper link resolution before file access ('link following') vulnerability in the `tar` source plugin of Apache BuildStream running on Python < 3.12 allows malicious source tarballs to write files on the host, with the privileges of th…

▾ MidnightApache Software Foundation · buildstreamEPSS 0.42%via NVD
CVE-2026-6831Medium· 6.5
5d ago

The Advanced Contact form 7 DB plugin for WordPress is vulnerable to missing authorization in all versions up to, and including, 2.0.9

The Advanced Contact form 7 DB plugin for WordPress is vulnerable to missing authorization in all versions up to, and including, 2.0.9. This is due to the plugin not properly verifying that a user is authorized to perform an action. This…

▾ Sunlitvsourz1td · Advanced Contact form 7 DBEPSS 0.26%via NVD
CVE-2026-5924Medium· 6.4
5d ago

The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Google Maps block's 'customStyle' attribute in all versions up to, and including, 2.1.3

The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Google Maps block's 'customStyle' attribute in all versions up to, and including, 2.1.3. This is due to the use of eval() on user-con…

▾ Sunlitjetmonsters · Getwid – Gutenberg BlocksEPSS 0.26%via NVD
CVEs tagged “cve.org” — page 72 · VulnSea