{"id":"CVE-2026-91813","published":"2026-09-23T08:17:13.550","lastModified":"2026-09-23T17:58:26.570","description":"A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows an update package to be replaced between download and high-privilege extraction due to insufficient file locking and integrity validation. This could enable local attackers to execute arbitrary code with elevated privileges.","cvssScore":8.8,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","cwes":["CWE-367"],"vendors":[],"products":[],"references":[{"url":"https://www.foxit.com/support/security-bulletins.html","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows local attackers to replace an update package, leading to potential execution of arbitrary code with elevated privileges.","exploitability":"Exploitation requires local access and the ability to replace the update package between download and extraction. Precondition is the presence of a local attacker with sufficient privileges.","blast_radius":"If exploited, this could result in unauthorized code execution with elevated privileges, potentially leading to full system compromise.","remediation":"Disable the automatic update feature or ensure that all update packages are validated and verified before extraction.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","local-privilege-escalation","file-integrity","update-mechanism"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-28T08:56:59.397Z"}}