Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-25858


In Foxit PDF Reader before 2024.1 and PDF Editor before 2024.1, code execution via JavaScript could occur because of an unoptimized prompt message for users to review parameters of commands.


Published

2024-03-05T21:15:09.030

Last Modified

2025-05-23T14:45:39.303

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.4 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-450

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application foxit pdf_editor < 2024.4 Yes
Application foxit pdf_reader < 2024.4 Yes

References