CVE-2026-57237
EUVD-2026-4219608.07.2026, 09:16
When the application opens a PDF and JavaScript modifies the properties of form fields, it causes the state of the underlying objects referenced by the program to become invalid. Eventually, it reads an illegal memory address, which leads to the crash of the application.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| foxit | pdf_editor | 𝑥 ≤ 13.2.4.24048 |
| foxit | pdf_editor | 14.0.0.33046 ≤ 𝑥 ≤ 14.0.4.33508 |
| foxit | pdf_editor | 2023.1.0.15510 ≤ 𝑥 ≤ 2023.3.0.23028 |
| foxit | pdf_editor | 2024.1.0.23997 ≤ 𝑥 ≤ 2024.4.1.27687 |
| foxit | pdf_editor | 2025.1.0.27937 ≤ 𝑥 ≤ 2025.3.0.35737 |
| foxit | pdf_editor | 2026.1.0.36452 ≤ 𝑥 ≤ 2026.1.1.36485 |
| foxit | pdf_reader | 𝑥 ≤ 2026.1.1.36485 |
| foxit | pdf_editor | 𝑥 ≤ 13.2.3.63444 |
| foxit | pdf_editor | 14.0.0.33046 ≤ 𝑥 ≤ 14.0.3.69295 |
| foxit | pdf_editor | 2023.1.0.15510 ≤ 𝑥 ≤ 2023.3.0.63083 |
| foxit | pdf_editor | 2024.1.0.23997 ≤ 𝑥 ≤ 2024.4.1.66479 |
| foxit | pdf_editor | 2025.1.0.27937 ≤ 𝑥 ≤ 2025.3.0.69570 |
| foxit | pdf_editor | 2026.1.0.36452 ≤ 𝑥 ≤ 2026.1.1.70276 |
| foxit | pdf_reader | 𝑥 ≤ 2026.1.1.70276 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration