ZDI-26-723: Foxit PDF Reader Doc Object Use-After-Free Information Disclosure Vulnerability
ZDI disclosed Foxit PDF Reader use-after-free CVE-2026-91790, which can leak information after a user opens a malicious file.
ZDI-26-723 discloses a use-after-free in the Doc object of Foxit PDF Reader, assigned CVE-2026-91790. Remote attackers may disclose sensitive information if the target visits a malicious page or opens a malicious file. ZDI rated the issue CVSS 3.3. The advisory does not report exploitation in the wild.
- CVE-2026-91790 is a Doc object use-after-free information disclosure.
- A user must open a malicious page or file for exploitation.
- ZDI scored the vulnerability CVSS 3.3.
Vulnerabilities mentionedAll →
- CVE-2026-917907.8—Unauthenticated UAF in Foxit PDF Editor/Reader 5.0+ (CVE-2026-91790)published · Foxit PDF Editor/Reader
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-91790 | Unauthenticated UAF in Foxit PDF Editor/Reader 5.0+ (CVE-2026-91790) Foxit PDF Editor/Reader exhibits a vulnerability where rendering pages image fails to validate malformed image objects. This flaw can cause the program to access freed internal data structures, leading to a crash due to uninitialized user state. An attacker can potentially exploit this to gain unauthorized access and other privileges. The affected scope is primarily the Foxit PDF Editor/Reader products, with no specific version range identified in the provided data. Do: Upgrade to patched versions of Foxit PDF Editor/Reader. Implement image object validation checks to block malformed content attributes. Monitor for UAF-related crashes and secure all exposed installations. |
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91790.
This source does not provide full text. Read it at zerodayinitiative.com.