Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/foxitsoftware/foxit-pdf-editor

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-3776 is a medium severity vulnerability in Foxit PDF Editor affecting versions 2025.3 and earlier, 14.0.2 and earlier, and 13.2.2 and earlier. The flaw arises because the application does not verify the presence of required appearance (AP) data before accessing stamp annotation resources in a PDF. If a crafted PDF contains a stamp annotation missing its AP entry, the application dereferences a null pointer, causing a crash and resulting in denial of service. There is no indication of data confidentiality or integrity impact. No patch or official fix information is currently provided.

Join the discussion

CVE-2026-3778 is a medium severity vulnerability in Foxit PDF Editor affecting versions 2025.3 and earlier, 14.0.2 and earlier, and 13.2.2 and earlier. The application fails to detect cyclic references in PDF JavaScript objects, which can lead to uncontrolled recursion when processing documents with cyclic page and annotation references. This recursion can cause stack exhaustion and crash the application. There is no indication of confidentiality or integrity impact, and no known exploits are reported. Patch status is not confirmed as no official fix or patch links are provided.

Join the discussion

CVE-2026-3779 is a use-after-free vulnerability in Foxit PDF Editor affecting versions 2025.3 and earlier, 14.0.2 and earlier, and 13.2.2 and earlier. The issue arises because the application's list box calculation logic retains stale references to page or form objects after they have been deleted or recreated. This flaw can be triggered by specially crafted documents, potentially leading to arbitrary code execution when the calculation runs. The vulnerability has a high severity with a CVSS score of 7.8.

Join the discussion
CVE-2024-41605: n/aCVE-2024-41605
0

In Foxit PDF Reader before 2024.3, and PDF Editor before 2024.3 and 13.x before 13.1.4, an attacker can replace an update file with a Trojan horse via side loading, because the update service lacks integrity validation for the updater. Attacker-controlled code may thus be executed.

Join the discussion

Showing 1 to 4 of 4 results

Filters:Package: pkg:github/foxitsoftware/foxit-pdf-editor
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses