logo

Foxit Releases Security Updates for PDF Editor Cloud XSS Vulnerabilities

ID: 552323a4-7497-5d4b-b9fc-9a77d71595a9

STIX ID: report--552323a4-7497-5d4b-b9fc-9a77d71595a9

Feed Name: The Cyber Express

Threat Score
45/100

Date Published: 2026-02-04

Date Updated: 2026-05-05

Author: Ashish Khaitan

...
...

Foxit released patches for multiple moderate-severity Cross-Site Scripting vulnerabilities in Foxit PDF Editor Cloud (CVE-2026-1591, CVE-2026-1592) and Foxit eSign (CVE-2025-66523) that could allow attackers to execute arbitrary JavaScript via crafted file attachments, layer names, or specially crafted links; the issues were reported by researcher Novee and have been patched with updates deployed or available via standard mechanisms.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.