CVE-2026-57247: Foxit PDF Editor/Reader Field Use-After-Free Vulnerability
Published Jul 8, 2026
·Updated
The application re-enters the document structure via field processing and deletes the current page, and then continues using the field objects obtained before deletion, triggering an illegal read and crashing.
Affected Software
17 affected components
Foxit Foxit PDF Editor/Reader
All of the following
Any of the following
Foxit PDF Editor<=13.2.4.24048
Foxit PDF Editor>=14.0.0.33046<=14.0.4.33508
Foxit PDF Editor>=2023.1.0.15510<=2023.3.0.23028
Foxit PDF Editor>=2024.1.0.23997<=2024.4.1.27687
Foxit PDF Editor>=2025.1.0.27937<=2025.3.0.35737
Foxit PDF Editor>=2026.1.0.36452<=2026.1.1.36485
Foxit PDF Reader<=2026.1.1.36485
Microsoft Windows
All of the following
Any of the following
Foxit PDF Editor<=13.2.4.24048
Foxit PDF Editor>=14.0.0.68868<=14.0.3.69295
Foxit PDF Editor>=2023.1.0.55583<=2023.3.0.63083
Foxit PDF Editor>=2024.1.0.63682<=2024.4.1.66479
Foxit PDF Editor>=2025.1.0.66692<=2025.3.0.69570
Foxit PDF Editor>=2026.1.0.70169<=2026.1.1.70276
Foxit PDF Reader<=2026.1.1.70276
Apple macOS
Event History
Jul 8, 2026
CVE Published
via MITRE·07:36 AM
Data Sourced
via MITRE·07:36 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-57247?
The severity of CVE-2026-57247 is rated as high with a score of 7.8.
2
How do I fix CVE-2026-57247?
To fix CVE-2026-57247, ensure you update to the latest version of Foxit PDF Editor or Foxit PDF Reader.
3
What software is affected by CVE-2026-57247?
CVE-2026-57247 affects Foxit PDF Editor, Foxit PDF Reader, and the combined Foxit PDF Editor/Reader.
4
What type of vulnerability is CVE-2026-57247 classified as?
CVE-2026-57247 is classified as a Use After Free vulnerability.
5
What kind of impact does CVE-2026-57247 have on users?
CVE-2026-57247 can lead to application crashes due to illegal memory reads.