Description
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of JavaScript array objects. A specially crafted PDF may cause the application to access a released object during array processing, potentially resulting in application crashes or arbitrary code execution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://www.foxit.com/support/security-bulletins.html |
|
History
Wed, 23 Sep 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of JavaScript array objects. A specially crafted PDF may cause the application to access a released object during array processing, potentially resulting in application crashes or arbitrary code execution. | |
| Title | Foxit Editor/Reader Array resetForm Use-After-Free Vulnerability | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Foxit
Published:
Updated: 2026-09-23T07:50:56.187Z
Reserved: 2026-09-15T07:34:43.392Z
Link: CVE-2026-91799
No data.
Status : Received
Published: 2026-09-23T08:17:11.907
Modified: 2026-09-23T08:17:11.907
Link: CVE-2026-91799
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-416
Use After Free