CVE-2026-91796
MEDIUM
NVD
CVSS Score
6.1
Severity
MEDIUM
Published
Sep 23, 2026
Vendor
unknown
Description
The interface of Foxit PDF Editor/Reader lacks the permission verification for secure reading mode, which allows specially crafted PDFs to trigger external SMB authentication without any security prompts and thereby leak the hash of the user's credentials.