Loading market data...
← Back to CVE feed

CVE-2026-91796

MEDIUM CVSS 6.1 View on NVD ↗

Description

The interface of Foxit PDF Editor/Reader lacks the permission verification for secure reading mode, which allows specially crafted PDFs to trigger external SMB authentication without any security prompts and thereby leak the hash of the user's credentials.

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H
Published: Sep 23, 2026 08:17 UTC Modified: Sep 23, 2026 17:58 UTC