#VU114021 Download of code without integrity check in Foxit PDF Reader for Windows and Foxit PDF Editor (formerly Foxit PhantomPDF) - CVE-2025-55310
Published: August 13, 2025
Foxit PDF Reader for Windows
Foxit PDF Editor (formerly Foxit PhantomPDF)
Foxit Software Inc.
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to software does not perform software integrity check when downloading updates. A local user can place a malicious file on the system and the application will load it without performing an integrity check, leading to code execution.