CVE-2016-4059: Foxitsoftware Foxit Reader

High severity, CVSS 7.8. EPSS: 4.4% chance of exploitation in the next 30 days.

Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via a crafted FlateDecode stream in a PDF document.

Affected products

Published 2016-04-22. Last modified 2026-06-17.