CVE-2025-59803: Medium severity Foxit Foxit PDF Editor and Reader vulnerability
Foxit PDF Editor and Reader before 2025.2.1 allow signature spoofing via triggers. An attacker can embed triggers (e.g., JavaScript) in a PDF document that execute during the signing process. When a signer reviews the document, the content appears normal. However, once the signature is applied, the triggers modify content on other pages or optional content layers without explicit warning. This can cause the signed PDF to differ from what the signer saw, undermining the trustworthiness of the digital signature. The fixed versions are 2025.2.1, 14.0.1, and 13.2.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59803?
CVE-2025-59803 is classified as a critical vulnerability allowing for signature spoofing in affected versions of Foxit PDF Editor and Reader.
How do I fix CVE-2025-59803?
To fix CVE-2025-59803, update Foxit PDF Editor and Reader to version 2025.2.1 or later.
What products are affected by CVE-2025-59803?
CVE-2025-59803 affects Foxit PDF Editor and Reader versions prior to 2025.2.1.
What type of attack does CVE-2025-59803 enable?
CVE-2025-59803 enables attackers to perform signature spoofing through embedded triggers in a PDF document.
How does CVE-2025-59803 impact users?
Users reviewing signed documents may be misled into believing the content is safe, posing a security risk upon signing.