Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Pdf Xchange

First CVE: Sep 1, 2018Active for: 8 yearsTotal CVEs: 576

PDF-XChange is a document-handling software vendor with a narrow product portfolio centered on PDF editing and manipulation tools, yet appears with marked prominence in vulnerability disclosures relative to the software category. The vendor's vulnerability footprint concentrates in flagship products such as PDF-XChange Editor, PDF Tools, and PDF-XChange Pro, which serve both individual and enterprise users for document creation, editing, and processing workflows. While the disclosure volume is substantial, the recurring weakness classes remain diffuse across the products, suggesting a varied attack surface rather than a single dominant flaw pattern. Defenders should monitor this vendor's advisories as part of document-processing risk management, particularly in environments where these tools handle untrusted or user-supplied files; current severity, exploitation status, and exposure counts are shown alongside this summary.

FAUCET AI Generated
288
Total CVEs
More Total CVEs than 100% of tracked vendors
16.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 100% of tracked vendors
6.7
Avg CVSS Score
Higher Avg CVSS Score than 44% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Pdf Xchange over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 1, 2018
7 years ago
Most Recent CVE
Dec 9, 2025
228 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (288 CVEs).

288 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-0907HIGH
PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affecte
Feb 11, 20258.825NONO
CVE-2025-0903HIGH
PDF-XChange Editor RTF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected
Feb 11, 20258.825NONO
CVE-2025-0899HIGH
PDF-XChange Editor AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD
Feb 11, 20258.825NONO
CVE-2022-37354HIGH
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in
Mar 29, 20237.825NONO
CVE-2022-42423HIGH
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in
Jan 26, 20237.825NONO
CVE-2022-42421HIGH
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in
Jan 26, 20237.825NONO
CVE-2022-42420HIGH
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in
Jan 26, 20237.825NONO
CVE-2022-42419HIGH
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in
Jan 26, 20237.825NONO
CVE-2022-42418HIGH
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in
Jan 26, 20237.825NONO
CVE-2022-42416HIGH
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in
Jan 26, 20237.825NONO
View all 288 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products288 CVEs
37%
57%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local267 (92.7%)
Network20 (6.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (0.3%)
Attack Complexity
Low287 (99.7%)
High1 (0.3%)
Unknown0 (0.0%)
User Interaction
None5 (1.7%)
Unknown0 (0.0%)
Required283 (98.3%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None288 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (288 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Pdf Xchange.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Pdf Xchange — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Pdf Xchange's Products

View all 3 CNAs →

Top CWEs