Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
Versions 2026.1 and earlier
affected
Versions 14.0.3 and earlier
affected
Default status
unaffected
Versions 2026.1 and earlier
affected
Description
Parsing logic flaws cause non-signature data to be misidentified as valid signatures when processing malformed form field hierarchies, leading to invalid memory writes and program crashes during internal data structure construction.
Problem types
CWE-20 Improper input validation
Product status
Versions 2026.1 and earlier
Versions 14.0.3 and earlier
Versions 2026.1 and earlier
Credits
Anonymous working with TrendAI Zero Day Initiative
References
www.foxit.com/support/security-bulletins.html