CVE-2025-55311: Medium severity Foxit Foxit PDF and Editor vulnerability
An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. A crafted PDF can use JavaScript to alter annotation content and subsequently clear the file's modification status via JavaScript interfaces. This circumvents digital signature verification by hiding document modifications, allowing an attacker to mislead users about the document's integrity and compromise the trustworthiness of signed PDFs.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-55311?
CVE-2025-55311 is classified as a high severity vulnerability due to its potential to bypass digital signature verification.
How do I fix CVE-2025-55311?
To mitigate CVE-2025-55311, users should update Foxit PDF and Editor to the latest version beyond the affected versions 13.2 and 2025.2.
What types of vulnerabilities are related to CVE-2025-55311?
CVE-2025-55311 is related to vulnerabilities that involve JavaScript manipulation and digital signature verification issues in PDF files.
Who is impacted by CVE-2025-55311?
Users of Foxit PDF and Editor for Windows and macOS prior to versions 13.2 and 2025.2 are impacted by CVE-2025-55311.
What actions should I take if I cannot update my software due to CVE-2025-55311?
If unable to update, users should restrict the use of PDF files from untrusted sources to minimize exposure to CVE-2025-55311.