UNKNOWNCVE-2026-3780

Foxit PDF Editor/Reader Installer Uncontrolled Search Path Privilege Escalation

Platform

windows

Component

foxit-pdf-reader

The application's installer runs with elevated privileges but resolves system executables and DLLs using untrusted search paths that can include user-writable directories, allowing a local attacker to place malicious binaries with the same names and have them loaded or executed instead of the legitimate system files, resulting in local privilege escalation.

How to fix

Actualice Foxit PDF Reader a una versión posterior a 2025.3 o 14.0.2 para corregir la vulnerabilidad. Descargue la última versión desde el sitio web oficial de Foxit.

Monitor your dependencies automatically

Get notified when new vulnerabilities affect your projects. Free forever.

Start free
CVE-2026-3780 — Vulnerability Details | NextGuard | NextGuard