Skip to main content

Vendor archive

foxit CVEs

Beta · best-effort

358 CVEs tagged to vendor foxit5 Critical, 261 High, 62 Medium, 30 Low, 0 Unrated.

CVE-2025-66520

Published Dec 19, 2025

A stored cross-site scripting (XSS) vulnerability exists in the Portfolio feature of the Foxit PDF Editor cloud (pdfonline.foxit.com). User-supplied SVG files are not properly san…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66519

Published Dec 19, 2025

A stored cross-site scripting (XSS) vulnerability exists in pdfonline.foxit.com within the Layer Import functionality. A crafted payload can be injected into the “Create new Layer…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66502

Published Dec 19, 2025

A stored cross-site scripting (XSS) vulnerability exists in pdfonline.foxit.com within the Page Templates feature. A crafted payload can be stored as the template name, which is l…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66501

Published Dec 19, 2025

A stored cross-site scripting (XSS) vulnerability exists in pdfonline.foxit.com within the Predefined Text feature of the Foxit eSign section. A crafted payload can be stored via…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66500

Published Dec 19, 2025

A stored cross-site scripting (XSS) vulnerability exists in webplugins.foxit.com. A postMessage handler fails to validate the message origin and directly assigns externalPath to a…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 51-75 of 358 CVEsPage 3 of 15