Home

Description

Improper control flow management allows a crafted document action chain to cause modal dialog reentry on the main thread, resulting in UI freeze and denial of service.

PUBLISHED Reserved 2026-04-09 | Published 2026-04-27 | Updated 2026-04-27 | Assigner Foxit




MEDIUM: 5.5CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Problem types

Insufficient Control Flow Management (CWE-691)

Product status

Default status
unaffected

Versions 2026.1 and earlier
affected

Versions 14.0.3 and earlier
affected

Versions 13.2.3 and earlier
affected

Default status
unaffected

Versions 2026.1 and earlier
affected

Credits

CITIVD finder

References

www.foxit.com/support/security-bulletins.html

cve.org (CVE-2026-5938)

nvd.nist.gov (CVE-2026-5938)

Download JSON