Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
Buscando: "Foxit" — 24 resultados ✕ Limpiar búsqueda
22,113
Total alertas
4677
Críticas
16848
Altas
8
Ransomware
1019
Esta semana
RSS
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91818] A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript handling of PDF annota…
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript handling of PDF annotations. Reentrant page-event processing during annotation enumeration may release the associated page object, which is subsequently accessed, resulting in an application crash.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91809] A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF form fi…
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF form fields. Improper validation during field-name traversal may cause the application to access a released object, resulting in an application crash.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91811] A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to…
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to insufficient validation of vertex indices in triangular fan texture meshes. Successful exploitation could result in memory corruption and an application crash.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91812] A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows man-in-the-middle attackers to …
A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows man-in-the-middle attackers to bypass certificate validation and package integrity checks, potentially enabling arbitrary code execution with system privileges.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91813] A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows an update package to be replace…
A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows an update package to be replaced between download and high-privilege extraction due to insufficient file locking and integrity validation. This could enable local attackers to execute arbitrary code with elevated privileges.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91815] Foxit PDF Editor/Reader does not perform sufficient verification of the JPEG2000 image metadata in t…
Foxit PDF Editor/Reader does not perform sufficient verification of the JPEG2000 image metadata in the PDF file, which leads to out-of-bounds write in the heap buffer during decoding, potentially causing the program to crash and introducing the risk of arbitrary code execution.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91816] A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of PDF annotations. Reen…
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of PDF annotations. Reentrant annotation deletion triggered by embedded JavaScript can cause the application to access an annotation object after it has been released, resulting in a use-after-free condition and application crash.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91800] A local privilege escalation vulnerability exists in the installer of Foxit PDF Editor for macOS due…
A local privilege escalation vulnerability exists in the installer of Foxit PDF Editor for macOS due to insufficient validation of a user-modifiable configuration value during high-privilege upgrades. A local attacker could exploit this issue to execute arbitrary commands with root privileges.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91801] A path traversal vulnerability exists in Foxit PDF Editor/Reader's handling of embedded PDF resource…
A path traversal vulnerability exists in Foxit PDF Editor/Reader's handling of embedded PDF resources. Insufficient validation of resource file paths may allow files to be written outside their intended locations, potentially enabling arbitrary code execution.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91802] A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s WebP image decodi…
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s WebP image decoding due to improper handling of bitmap stride and target buffer formats. Successful exploitation could result in an application crash.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91803] A local privilege escalation vulnerability exists in the updater of Foxit PDF Editor/Reader due to u…
A local privilege escalation vulnerability exists in the updater of Foxit PDF Editor/Reader due to unsafe loading of dynamic-link libraries from a user-writable directory during high-privilege operations. A local attacker could exploit this issue to execute code with elevated privileges.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91804] A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s rendering of Circ…
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s rendering of Circle annotations with malformed Cloudy appearance streams in specially crafted PDF files. Insufficient validation of the appearance geometry can result in memory corruption and application crashes.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91805] A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s PDF page-tree handling. A special…
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s PDF page-tree handling. A specially crafted PDF can trigger page-structure changes during rendering, causing the application to access released page objects and resulting in memory corruption and an application crash.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91806] A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of PDF form fields. Embe…
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of PDF form fields. Embedded JavaScript may access form-field references after the corresponding fields have been released, resulting in an application crash.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91792] When processing a specially crafted PDF, Foxit PDF Editor/Reader may perform reentrant zoom and layo…
When processing a specially crafted PDF, Foxit PDF Editor/Reader may perform reentrant zoom and layout operations through page- and annotation-related JavaScript actions. This can cause the application to access page objects after they have been released, resulting in a use-after-free condition and an application crash.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91793] When opening a specially crafted PDF, Foxit PDF Editor/Reader executes scripts that modify annotatio…
When opening a specially crafted PDF, Foxit PDF Editor/Reader executes scripts that modify annotation rich-text attributes containing malformed font data. During subsequent annotation appearance reconstruction, it accesses an object after it has been released, resulting in a use-after-free condition and an application crash.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91794] An out-of-bounds write vulnerability exists in the PDF rendering process of Foxit PDF Editor/Reader …
An out-of-bounds write vulnerability exists in the PDF rendering process of Foxit PDF Editor/Reader due to insufficient consistency and boundary validation when processing malformed color space data, which may cause the program to crash and potentially lead to remote code execution.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91795] Foxit PDF Editor/Reader's FileOpen plugin did not adequately validate certain encryption metadata in…
Foxit PDF Editor/Reader's FileOpen plugin did not adequately validate certain encryption metadata in specially crafted PDF files. This could leave an internal pointer in an invalid state, resulting in chained read and write access violations and potentially enabling arbitrary code execution.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91797] Foxit PDF Editor/Reader failed to validate the directory traversal path in the attachment file name,…
Foxit PDF Editor/Reader failed to validate the directory traversal path in the attachment file name, resulting in malicious attachments being able to be written to directories outside the expected secure area when the PDF is opened.
M Alto vulnerabilidad
23/09/2026
[CVE-2026-91798] A local privilege escalation vulnerability exists in the update daemon of Foxit PDF Editor/Reader du…
A local privilege escalation vulnerability exists in the update daemon of Foxit PDF Editor/Reader due to an insecure permission configuration that allows the configuration file to be modified by regular users, which may lead to arbitrary script execution with higher privileges.