PT-2026-35402 · Foxitsoftware · Foxit Pdf Editor+1

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-5940

CVSS v3.1

7.8

High

AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVE-2026-5940 Calling a function that triggers a UI refresh after removing comments via a script may access an invalidated object, leading to program crashes. https://t.co/W5L9hh3Za1

Fix

Use After Free

Weakness Enumeration

Related Identifiers

CVE-2026-5940
ZDI-26-301

Affected Products

Foxit Pdf Editor
Foxit Pdf Reader