OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-91818

HIGH · CVSS 7.8 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the JavaScript handling of PDF annotations in Foxit PDF Editor/Reader can lead to an application crash due to improper management of page objects during reentrant event processing. This high-severity flaw affects users relying on Foxit products for PDF manipulation, and organizations utilizing these tools should prioritize immediate patching to mitigate potential disruptions and security risks.

CVE
CVE-2026-91818
Severity
HIGH
CVSS
7.8
EPSS
0.12%
Java

Original NVD Description

A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript handling of PDF annotations. Reentrant page-event processing during annotation enumeration may release the associated page object, which is subsequently accessed, resulting in an application crash.

Related CVEs

Other vulnerabilities affecting the same vendor(s)