Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Stored XSS via Attachments Feature in https://pdfonline.foxit.com/
Vulnerability Description
Foxit PDF Editor Cloud (pdfonline) contains a stored cross-site scripting vulnerability in the file upload feature. A malicious username is embedded into the upload file list without proper escaping, allowing arbitrary JavaScript execution when the list is displayed. This issue affects pdfonline.foxit.com: before 2026‑02‑03.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Foxit PDF Editor Cloud 安全漏洞
Vulnerability Description
Foxit PDF Editor Cloud是美国Foxit公司的一个基于浏览器的在线PDF编辑平台。 Foxit PDF Editor Cloud 2026-02-03之前版本存在安全漏洞,该漏洞源于文件上传功能中恶意用户名未正确转义,可能导致存储型跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A