Pdf Editor

Vendor:

First CVE: Aug 4, 2021 · Active for 4 years

326
Total CVEs
More Total CVEs than 96% of tracked products
54.3
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 68% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Pdf Editor over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 4, 2021
4 years ago
Most Recent CVE
Jul 8, 2026
16 days ago

CVE Severity & Scoring

Pdf Editor326 CVEs
All CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local283 (86.8%)
Network43 (13.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low323 (99.1%)
High3 (0.9%)
Unknown0 (0.0%)
User Interaction
None20 (6.1%)
Unknown0 (0.0%)
Required306 (93.9%)
Privileges Required
Low11 (3.4%)
High0 (0.0%)
None315 (96.6%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (326 CVEs).

326 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulner
Aug 4, 20217.876NONO
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulner
Aug 4, 20217.858NONO
Foxit PDF Reader exportXFAData Exposed Dangerous Method Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected instal
May 3, 20247.850NONO
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulner
Aug 4, 20217.844NONO
The user-controllable executable files will be directly executed by high-privilege processes, allowing low-privilege users to have the opportunity to elevate their privileges to NT
Jul 8, 20267.837NONO
Foxit PDF Reader before 11.2.1 and Foxit PDF Editor before 11.2.1 have a Stack-Based Buffer Overflow related to XFA, for the 'subform colSpan="-2"' and 'draw colSpan="1"' substring
Feb 11, 20229.836NONO
When the application opens a PDF file and JavaScript deletes the PDF fields, the subsequent logic still uses the old field pointers, resulting in invalid pointer references and cau
Jul 8, 20267.834NONO
After the application opened the PDF, JavaScript deleted the form field object. Subsequently, it attempted to access the invalid object, which caused the application to crash.
Jul 8, 20267.834NONO
The embedded JavaScript in the PDF deleted the pages, making the object invalid. The application attempted to perform a write operation on the invalid pop-up annotations, resulting
Jul 8, 20267.834NONO
When the application opens a PDF and executes JavaScript, it performs abnormal operations on the list box field, and this operation is repeated after the form is reset. During this
Jul 8, 20267.833NONO

Exploit Exposure

Signals from CVEs in this product scope (326 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (326 CVEs).

Media Mentions

Signals from CVEs in this product scope (326 CVEs).

Top CNAs Publishing CVEs For Pdf Editor

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2025.2.0.6886826.40.2%00
2025.2.0.3304626.40.2%00
2025.1.0.66692126.90.2%00
2025.1.0.27937186.70.2%00
2024.1.0.6368218.815.6%00
2024.1.0.2399738.816.3%00
2023.2.0.6161144.40.4%00
2023.2.0.21408145.30.4%00
2023.1.0.5558344.40.4%00
2023.1.0.15510245.70.4%00
14.0.0.6886826.40.2%00
14.0.0.3304626.40.2%00
13.0.0.6182944.40.4%00
13.0.0.21632145.30.4%00
12.0.0.12394166.80.9%00
11.3.119.81.8%00
11.0.1.49938287.30.4%00
11.0.0.49893517.55.7%00