rootpwn

high · CVSS v3 8.1

CVE-2026-91791

Addressed potential issues where the application could be exposed to a Use-After-Free vulnerability and crash when handl…

Description

Addressed potential issues where the application could be exposed to a Use-After-Free vulnerability and crash when handling certain image objects, annotation objects, JavaScript array objects, page objects, or form fields, which attackers could exploit to disclose information or execute remote code. This occurs due to the access to an object that has been freed or released without proper validation.

Scores

Severity
high
CVSS v2
6.4
CVSS v3
8.1
CVSS v4
EPSS

← All CVEs