Foxit PDF Reader XFA Annotation Use-After-Free Remote Code Execution Vulnerability
CVE-2023-27330
What is CVE-2023-27330?
A vulnerability has been identified in Foxit PDF Reader that stems from improper handling of Annotation objects related to XFA features. This flaw allows remote attackers to potentially execute arbitrary code by tricking users into opening maliciously crafted PDF documents or visiting harmful websites. The issue arises due to a failure to validate the presence of an object before executing operations on it, which could be exploited to perform actions in the context of the current process. Users are advised to apply available security patches and exercise caution with untrusted documents.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PDF Reader 12.0.2.12465
References
EPSS Score
33% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved