PatchSiren

Foxit Software Inc. CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Foxit Software Inc. CVE published 2026-06-15

CVE-2026-12057

A HIGH severity vulnerability was discovered in an Unknown Vendor product, tracked as CVE-2026-12057 with a CVSS score of 8.6. The vulnerability occurs when the application executes a JavaScript script embedded in a PDF within a sandbox, failing to intercept some dangerous interfaces. This allows remote scripts to be loaded, resulting in arbitrary code execution.