rootpwn

high · CVSS v3 7.8 · EPSS 0.00346

CVE-2026-91797

Foxit PDF Editor/Reader failed to validate the directory traversal path in the attachment file name, resulting in malici…

Description

Foxit PDF Editor/Reader failed to validate the directory traversal path in the attachment file name, resulting in malicious attachments being able to be written to directories outside the expected secure area when the PDF is opened.

Scores

Severity
high
CVSS v2
7.2
CVSS v3
7.8
CVSS v4
EPSS
0.00346

← All CVEs