The Daily Tech Feed[verified]@dailytechonxPatch
The post announces that Foxit PDF Editor Cloud users should update because patches for CVE‑2026‑1591 and CVE‑2026‑1592 have been released to fix critical XSS vulnerabilities that could allow arbitrary JavaScript execution.
ThreatSynop[verified]@ThreatSynopPatch
Foxit has released patches for CVE‑2026‑1591, CVE‑2026‑1592, and CVE‑2025‑66523—moderate‑severity XSS flaws that allow authenticated attackers to inject JavaScript via attachments or URL parameters. Users are urged to update to the latest patched versions to eliminate the browser‑context execution path.
Cybersecurity News Everyday@TweetThreatNewsPatch
Foxit has released patches for three XSS vulnerabilities (CVE‑2026‑1591, CVE‑2026‑1592, CVE‑2025‑66523) affecting PDF Editor Cloud and eSign, addressing input validation flaws that could allow arbitrary JavaScript execution.
CVE@CVEnewDisclosure
The snippet discloses a stored XSS flaw in Foxit PDF Editor Cloud’s Create New Layer feature, noting unsanitized input, but provides no PoC, exploit, patch, or evidence of active exploitation.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces a stored XSS vulnerability in Foxit PDF Editor Cloud, detailing its technical nature but providing no evidence of exploitation or mitigation.