CVE-2026-91817
MEDIUM
NVD
CVSS Score
6.1
Severity
MEDIUM
Published
Sep 23, 2026
Vendor
unknown
Description
A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of wide strings in embedded PDF JavaScript. Insufficient validation of string-deletion ranges can cause an integer underflow, resulting in an out-of-bounds read and application crash.