{"id":"CVE-2026-91817","published":"2026-09-23T08:17:14.010","lastModified":"2026-09-23T17:58:26.570","description":"A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of wide strings in embedded PDF JavaScript. Insufficient validation of string-deletion ranges can cause an integer underflow, resulting in an out-of-bounds read and application crash.","cvssScore":6.1,"cvssSeverity":"MEDIUM","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H","cwes":["CWE-125"],"vendors":[],"products":[],"references":[{"url":"https://www.foxit.com/support/security-bulletins.html","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}