Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.foxit.com/support/security-bulletins.html |
|
Wed, 23 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 23 Sep 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A path traversal vulnerability exists in Foxit PDF Editor/Reader's handling of embedded PDF resources. Insufficient validation of resource file paths may allow files to be written outside their intended locations, potentially enabling arbitrary code execution. | |
| Title | Foxit PDF Editor/Reader RichMedia Annotation Directory Traversal Remote Code Execution Vulnerability | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Foxit
Published:
Updated: 2026-09-23T14:45:14.571Z
Reserved: 2026-09-15T07:34:43.392Z
Link: CVE-2026-91801
Updated: 2026-09-23T14:45:10.547Z
Status : Awaiting Analysis
Published: 2026-09-23T08:17:12.133
Modified: 2026-09-23T17:58:26.570
Link: CVE-2026-91801
No data.
OpenCVE Enrichment
Updated: 2026-09-23T15:00:06Z
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')