Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.foxit.com/support/security-bulletins.html |
|
Wed, 23 Sep 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When rendering the page image, Foxit PDF Editor/Reader fails to perform validation on image objects whose optional content attributes are malformed. As a result, the program may access an already-freed internal data structure, triggering a crash due to UAF. | |
| Title | Foxit PDF Editor/Reader Doc Object Use-After-Free Information Disclosure Vulnerability | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Foxit
Published:
Updated: 2026-09-23T07:51:28.854Z
Reserved: 2026-09-15T07:34:40.287Z
Link: CVE-2026-91790
No data.
Status : Received
Published: 2026-09-23T08:17:10.873
Modified: 2026-09-23T08:17:10.873
Link: CVE-2026-91790
No data.
OpenCVE Enrichment
No data.
-
CWE-416
Use After Free