Use-After-Free Vulnerability in Foxit PDF Reader Across Multiple Versions
CVE-2025-66494
What is CVE-2025-66494?
A use-after-free vulnerability in the PDF file parsing of Foxit PDF Reader allows for the potential execution of arbitrary code due to improper management of PDF objects. Multiple parent objects referencing a single PDF object can be freed unexpectedly while still being in use, creating an opportunity for remote attackers to exploit this flaw. Users are advised to upgrade to the latest versions to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Foxit PDF Editor Windows Versions 2025.2.1 and earlier
Foxit PDF Editor Windows Versions 14.0.1 and earlier
Foxit PDF Editor Windows Versions 13.2.1 and eariler
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
