CVE-2026-91794
An out-of-bounds write vulnerability exists in the PDF rendering process of Foxit PDF Editor/Reader due to insufficient consistency and boundary validation when processing malformed color space data, which may cause the program to crash and potentially lead to remote code execution.
- Published Sep 23, 2026
- CVSS 7.8 high
- 0.2% chance of exploitation in the next 30 days (EPSS)
Affected software
In the news
- Multiple vulnerabilities in FoxIT products CERT-FR ·