CVE-2026-5938

Published: Apr 27, 2026 Last Modified: Apr 29, 2026
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 5,5
Source: 14984358-7092-470d-8f34-ade47a7658a2
Attack Vector: local
Attack Complexity: low
Privileges Required: none
User Interaction: required
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: high

Description

AI Translation Available

Improper control flow management allows a crafted document action chain to cause modal dialog reentry on the main thread, resulting in UI freeze and denial of service.

691

Insufficient Control Flow Management

Draft
Common Consequences
Security Scopes Affected:
Other
Potential Impacts:
Alter Execution Logic
Applicable Platforms
All platforms may be affected
View CWE Details
Application

Pdf Editor by Foxit

Version Range Affected
To 13.2.4 (exclusive)
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Pdf Editor by Foxit

Version Range Affected
From 14.0.0 (inclusive)
To 14.0.4 (exclusive)
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Pdf Reader by Foxit

Version Range Affected
To 2026.1.1 (exclusive)
cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Pdf Editor by Foxit

Version Range Affected
From 2023.0.0 (inclusive)
To 2026.1.1 (exclusive)
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.foxit.com/support/security-bulletins.html