Unrated severityNVD Advisory· Published Jul 8, 2026· Updated Jul 8, 2026
Foxit PDF Editor/Reader Form Field Use-After-Free Remote Code Execution Vulnerability
CVE-2026-57240
Description
When the application opens a PDF file and JavaScript deletes the PDF fields, the subsequent logic still uses the old field pointers, resulting in invalid pointer references and causing the application to crash.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.