OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-91791

HIGH · CVSS 7.8 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

Foxit PDF Editor/Reader is vulnerable to a high-severity issue when processing specially crafted PDF files, which can trigger a reentrant execution condition in JavaScript due to page-visibility events. This vulnerability may lead to an invalid memory read and application crash, potentially exposing users to denial-of-service attacks. Organizations using Foxit PDF products should prioritize patching this vulnerability to mitigate risks associated with application stability and security.

CVE
CVE-2026-91791
Severity
HIGH
CVSS
7.8
EPSS
0.14%
Java

Original NVD Description

When processing a specially crafted PDF file, Foxit PDF Editor/Reader may encounter a reentrant execution condition involving JavaScript triggered by page-visibility events. This can cause the application to access a released page-view object while calculating annotation boundaries, resulting in an invalid memory read and application crash.

Related CVEs

Other vulnerabilities affecting the same vendor(s)