ZDI-25-1175: Foxit PDF Reader PDF File Parsing Use-After-Free Remote Code Execution Vulnerability
Published Dec 19, 2025
·Updated
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-66494.
Affected Software
1 affected component
Foxit Foxit PDF Reader
Event History
Dec 19, 2025
Advisory Published
via ZDI·06:00 AM
Data Sourced
via ZDI·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-25-1175?
ZDI-25-1175 has a CVSS rating that indicates a critical risk of remote code execution.
2
How do I fix ZDI-25-1175?
To fix ZDI-25-1175, update Foxit PDF Reader to the latest version provided by the vendor.
3
Which software is affected by ZDI-25-1175?
ZDI-25-1175 affects installations of Foxit PDF Reader.
4
What type of attack is associated with ZDI-25-1175?
ZDI-25-1175 is associated with remote code execution attacks that require user interaction.
5
What action must a user take to exploit ZDI-25-1175?
A user must visit a malicious page or open a malicious file to exploit ZDI-25-1175.