CVE-2026-3774: Self-Modifications Affecting Altered Printing and Redaction in Foxit PDF Editor
The application allows PDF JavaScript and document/print actions (such as WillPrint/DidPrint) to update form fields, annotations, or optional content groups (OCGs) immediately before or after redaction, encryption, or printing. These script‑driven updates are not fully covered by the existing redaction, encryption, and printing logic, which, under specific document structures and user workflows, may cause a small amount of sensitive content to remain unremoved or unencrypted as expected, or result in printed output that slightly differs from what was reviewed on screen.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3774?
CVE-2026-3774 is classified as a high-severity vulnerability that can lead to unauthorized modifications in PDFs.
How do I fix CVE-2026-3774?
To remediate CVE-2026-3774, users should update to the latest version of Foxit PDF Editor containing the security patch.
What types of actions are affected by CVE-2026-3774?
CVE-2026-3774 affects JavaScript and document actions allowing manipulation of form fields and annotations during redaction.
Can CVE-2026-3774 lead to data breaches?
Yes, CVE-2026-3774 can potentially lead to data breaches by allowing unauthorized changes to sensitive information in PDFs.
Who is affected by CVE-2026-3774?
Users of Foxit PDF Editor are affected by CVE-2026-3774, particularly those who utilize JavaScript and document actions.