Vulnerabilities > Foxit > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-05-20 CVE-2022-28104 Unrestricted Upload of File with Dangerous Type vulnerability in Foxit PDF Editor 11.3.1
Foxit PDF Editor v11.3.1 was discovered to contain an arbitrary file upload vulnerability.
network
low complexity
foxit CWE-434
critical
9.8
2022-02-11 CVE-2022-24954 Out-of-bounds Write vulnerability in Foxit PDF Editor and PDF Reader
Foxit PDF Reader before 11.2.1 and Foxit PDF Editor before 11.2.1 have a Stack-Based Buffer Overflow related to XFA, for the 'subform colSpan="-2"' and 'draw colSpan="1"' substrings.
network
low complexity
foxit CWE-787
critical
9.8
2022-02-11 CVE-2022-24955 Uncontrolled Search Path Element vulnerability in Foxit PDF Editor and PDF Reader
Foxit PDF Reader before 11.2.1 and Foxit PDF Editor before 11.2.1 have an Uncontrolled Search Path Element for DLL files.
network
low complexity
foxit CWE-427
critical
9.8
2021-08-11 CVE-2021-38563 Improper Validation of Array Index vulnerability in multiple products
An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1.
network
low complexity
foxitsoftware foxit CWE-129
critical
9.8