Information Disclosure Vulnerability in PDF-XChange Editor
CVE-2025-6656
What is CVE-2025-6656?
The PDF-XChange Editor is affected by a vulnerability that arises from improper validation of user-supplied data during the parsing of PRC files. This flaw can lead to an out-of-bounds read, potentially disclosing sensitive information. In this scenario, user interaction is necessary, as the victim must open a malicious PRC file or visit a compromised web page to trigger the vulnerability. Attackers could leverage this issue to read past the end of an allocated object, and it may be exploited in conjunction with other vulnerabilities to execute arbitrary code within the current process context.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PDF-XChange Editor 10.5.2.395
References
CVSS V3.0
Timeline
Vulnerability published
Vulnerability Reserved
