CVE-2016-6168: Foxitsoftware Foxit Reader
High severity, CVSS 7.8. EPSS: 2.5% chance of exploitation in the next 30 days.
Use-after-free vulnerability in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via a crafted PDF file.
Affected products
- Foxitsoftware Foxit Reader: up to and including 7.3.4.311
- Foxitsoftware Phantompdf: up to and including 7.3.4.311
Published 2018-02-07. Last modified 2026-06-17.