MinorCritical vulnerability
CVE-2026-91801 (CVSS 7.8)
NVD · officialPublished Sep 23, 2026Risk 23/100EPSS 0.2%
A path traversal vulnerability exists in Foxit PDF Editor/Reader's handling of embedded PDF resources. Insufficient validation of resource file paths may allow files to be written outside their intended locations, potentially enabling arbitrary code execution.
Technical details
CVSS
7.8
AV:LocalAC:LowPR:NoneUI:RequiredC:HighI:HighA:High
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source