JavaScript Execution Flaw in PDF Reader Software by Foxit
CVE-2026-12057
8.6HIGH
What is CVE-2026-12057?
A security vulnerability in Foxit's PDF Reader allows executed JavaScript scripts embedded within PDFs to bypass sandbox restrictions. This weakness permits remote scripts to be loaded and executed without proper interception, leading to potential arbitrary code execution. Users of impacted versions are strongly urged to apply security updates to mitigate these risks.
Affected Version(s)
Foxit AI before 2026-06-15
