CVE-2026-5943: Foxit PDF Editor

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Document structural anomalies caused inconsistencies between page element relationships and internal index states. When scripts triggered document modifications, object reference validity was not properly maintained, leading to a crash when accessing an invalid pointer during page information queries.

Affected products

  • Foxit PDF Editor: before 13.2.4 (fixed in 13.2.4); from 14.0.0, before 14.0.4 (fixed in 14.0.4); from 2023.0.0, before 2026.1.1 (fixed in 2026.1.1)
  • Foxit PDF Reader: before 2026.1.1 (fixed in 2026.1.1)

Published 2026-04-27. Last modified 2026-06-17.