2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91818.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91817.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91816.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91815.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows local attackers to escalate privileges on affected installations of Foxit PDF Reader. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91813.
P15
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.1. The following CVEs are assigned: CVE-2026-91812.
P15
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91811.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91810.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91809.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91808.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91807.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:30 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91806.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-57256.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91792.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91790.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91791.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91789.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 4.7. The following CVEs are assigned: CVE-2026-91788.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91801.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91797.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to disclose NTLM responses on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91796.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91795.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91794.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-91793.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-57238.
P5
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-13128.
P20
2026-09-23 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-23 22:10 UTC
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2026-13129.
P5
2026-09-23 02:40 UTC
Community
SANS Internet Storm Center · indexed 2026-09-23 02:45 UTC
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
P0
2026-09-22 21:45 UTC
Security Journalism
BleepingComputer · Lawrence Abrams · indexed 2026-09-22 21:50 UTC
Security researchers developed an attack that lets hackers with privileged access register a rogue external MFA provider that steals users' passwords during legitimate login attempts. [...]
P0
2026-09-22 21:40 UTC
Security Journalism
BleepingComputer · Bill Toulas · indexed 2026-09-22 21:50 UTC
Sweden's data privacy regulator, IMY, has imposed a $183,000 (SEK 1.8 million) fine on IT systems provider Miljödata for inadequate security measures leading to a breach in August 2025 affecting 2.2 million people. [...]
P0