Unauthenticated UAF in Foxit PDF Editor/Reader 5.0+ (CVE-2026-91790)
CVSS 3.1
7.8high
EPSS
—
Published
()
Modified
AI analysis
Foxit PDF Editor/Reader exhibits a vulnerability where rendering pages image fails to validate malformed image objects. This flaw can cause the program to access freed internal data structures, leading to a crash due to uninitialized user state. An attacker can potentially exploit this to gain unauthorized access and other privileges. The affected scope is primarily the Foxit PDF Editor/Reader products, with no specific version range identified in the provided data.
What to do: Upgrade to patched versions of Foxit PDF Editor/Reader. Implement image object validation checks to block malformed content attributes. Monitor for UAF-related crashes and secure all exposed installations.
Affected
Foxit PDF Editor/Reader
—
Estimated exposure
—No basis for an estimate.
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
Description
When rendering the page image, Foxit PDF Editor/Reader fails to perform validation on image objects whose optional content attributes are malformed. As a result, the program may access an already-freed internal data structure, triggering a crash due to UAF.
ZDI disclosed Foxit PDF Reader use-after-free CVE-2026-91790, which can leak information after a user opens a malicious file.
ZDI-26-723 discloses a use-after-free in the Doc object of Foxit PDF Reader, assigned CVE-2026-91790. Remote attackers may disclose sensitive information if the target visits a malicious page or opens a malicious file. ZDI rated the issue CVSS 3.3. The advisory does not report exploitation in the wild.