OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-91813

HIGH · CVSS 8.8 EPSS 0.09%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

A vulnerability in the update mechanism of Foxit PDF Editor/Reader permits local attackers to replace an update package during the download and extraction process, due to inadequate file locking and integrity checks. This flaw could lead to arbitrary code execution with elevated privileges, posing a significant risk to systems using the affected software. Organizations utilizing Foxit PDF products should prioritize addressing this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-91813
Severity
HIGH
CVSS
8.8
EPSS
0.09%

Original NVD Description

A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows an update package to be replaced between download and high-privilege extraction due to insufficient file locking and integrity validation. This could enable local attackers to execute arbitrary code with elevated privileges.

Related CVEs

Other vulnerabilities affecting the same vendor(s)