CVE-2020-26537: Foxitsoftware Foxit Reader

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. In a certain Shading calculation, the number of outputs is unequal to the number of color components in a color space. This causes an out-of-bounds write.

Affected products

Published 2020-10-02. Last modified 2026-06-17.