Foxit Releases Security Updates for PDF Editor Cloud XSS Vulnerabilities
ID: 552323a4-7497-5d4b-b9fc-9a77d71595a9
STIX ID: report--552323a4-7497-5d4b-b9fc-9a77d71595a9
Feed Name: The Cyber Express
Threat Score
Foxit released patches for multiple moderate-severity Cross-Site Scripting vulnerabilities in Foxit PDF Editor Cloud (CVE-2026-1591, CVE-2026-1592) and Foxit eSign (CVE-2025-66523) that could allow attackers to execute arbitrary JavaScript via crafted file attachments, layer names, or specially crafted links; the issues were reported by researcher Novee and have been patched with updates deployed or available via standard mechanisms.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
