CVE-2018-20249: Foxitsoftware Quick PDF Library
High severity, CVSS 8.8. EPSS: 1.4% chance of exploitation in the next 30 days.
In Foxit Quick PDF Library (all versions prior to 16.12), issue where loading a malformed or malicious PDF containing invalid xref entries using the DAOpenFile or DAOpenFileReadOnly functions may result in an access violation caused by out of bounds memory access.
Affected products
- Foxitsoftware Quick PDF Library: before 16.12 (fixed in 16.12)
Published 2018-12-24. Last modified 2026-06-17.