CyberRota Analysis
AI-GeneratedThe PDF creation feature of Foxit PDF Services API is vulnerable to a Server-Side Request Forgery (SSRF) attack due to improper validation of URL redirection, allowing attackers to access sensitive information by referencing external files. This high-severity vulnerability poses a significant risk to organizations using the affected API, particularly those handling sensitive data. It is crucial for security teams and developers utilizing Foxit PDF Services to prioritize remediation efforts to mitigate potential information disclosure risks.
Original NVD Description
The PDF creation feature of Foxit PDF Services API supports referencing external files. Although local file access is restricted, an attacker could trigger an SSRF vulnerability by using URL redirection to bypass validation, leading to information disclosure.