Beveiligingsadvies

CVE-2026-1591

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-03 07:57:27
Laatst bijgewerkt 2026-02-03 18:47:39
Toegewezen door Foxit
CVSS-score 6.3
Status PUBLISHED

Beschrijving

Foxit PDF Editor Cloud (pdfonline) contains a stored cross-site scripting vulnerability in the file upload feature. A malicious username is embedded into the upload file list without proper escaping, allowing arbitrary JavaScript execution when the list is displayed. This issue affects pdfonline.foxit.com: before 2026‑02‑03.