Loading market data...
← Back to CVE feed

CVE-2026-18597

HIGH CVSS 8.5 View on NVD ↗

Description

The PDF creation feature of Foxit PDF Services API supports referencing external files. Although local file access is restricted, an attacker could trigger an SSRF vulnerability by using URL redirection to bypass validation, leading to information disclosure.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N
Published: Aug 06, 2026 08:16 UTC Modified: Aug 06, 2026 13:17 UTC