Foxit PDF Editor and Reader integrity flaw
A vulnerability in Foxit PDF Editor and Reader can allow an attacker to compromise data integrity; patches are available.
ANSSI (CERT-FR) issued an advisory regarding a data integrity vulnerability affecting Foxit PDF Editor and PDF Reader. The flaw, tracked as CVE-2026-18622, impacts multiple version branches including 14.0.x prior to 14.0.6, versions prior to 13.2.6, and versions prior to 2026.1.3 for both products.
Foxit has published a security bulletin detailing fixes, and the advisory recommends affected users apply the vendor-provided patches to remediate the issue. No evidence of active exploitation is mentioned in the advisory, and the vulnerability is limited to an integrity impact rather than remote code execution or data disclosure.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1016
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free