CVE-2018-14442: Foxitsoftware Foxit Reader
Critical severity, CVSS 9.8. EPSS: 4.7% chance of exploitation in the next 30 days.
Foxit Reader before 9.2 and PhantomPDF before 9.2 have a Use-After-Free that leads to Remote Code Execution, aka V-88f4smlocs.
Affected products
- Foxitsoftware Foxit Reader: before 9.2 (fixed in 9.2)
- Foxitsoftware Phantompdf: before 9.2 (fixed in 9.2)
Published 2018-07-20. Last modified 2026-06-17.