Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

PDF-XChange — Vulnerabilities & Security Advisories 280

Browse all 280 CVE security advisories affecting PDF-XChange. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PDF-XChange is a widely used document management suite primarily designed for viewing, editing, and annotating PDF files across Windows environments. Despite its utility, the software has accumulated approximately 280 Common Vulnerabilities and Exposures (CVEs), reflecting a significant historical security debt. The majority of these flaws involve remote code execution (RCE) and buffer overflow vulnerabilities, often triggered by malformed or maliciously crafted PDF documents. Additionally, instances of cross-site scripting (XSS) and privilege escalation have been documented, allowing attackers to bypass security controls or execute arbitrary code with elevated permissions. While no single catastrophic incident has defined the product’s public history, the sheer volume of disclosed vulnerabilities indicates persistent issues in input validation and memory management. Users are advised to maintain strict patching schedules to mitigate these known risks associated with the application’s parsing engine.

Top products by PDF-XChange: PDF-XChange Editor
CVE IDTitleCVSSSeverityPublished
CVE-2026-2040 PDF-XChange Editor TrackerUpdate Uncontrolled Search Path Element Local Privilege Escalation Vulnerability — PDF-XChange EditorCWE-427 7.8AIHighAI2026-02-20
CVE-2025-6640 PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability — PDF-XChange EditorCWE-416 7.8AIHighAI2025-06-25
CVE-2025-6641 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6642 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — PDF-XChange EditorCWE-125 7.8AIHighAI2025-06-25
CVE-2025-6643 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6644 PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability — PDF-XChange EditorCWE-416 7.8AIHighAI2025-06-25
CVE-2025-6645 PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability — PDF-XChange EditorCWE-416 7.8AIHighAI2025-06-25
CVE-2025-6646 PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability — PDF-XChange EditorCWE-416 5.5AIMediumAI2025-06-25
CVE-2025-6647 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — PDF-XChange EditorCWE-787 7.8AIHighAI2025-06-25
CVE-2025-6648 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6649 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6650 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6651 PDF-XChange Editor JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — PDF-XChange EditorCWE-787 7.8AIHighAI2025-06-25
CVE-2025-6652 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6653 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6654 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — PDF-XChange EditorCWE-787 7.8AIHighAI2025-06-25
CVE-2025-6655 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6656 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6657 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6658 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-6659 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — PDF-XChange EditorCWE-787 7.8AIHighAI2025-06-25
CVE-2025-6660 PDF-XChange Editor GIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability — PDF-XChange EditorCWE-122 7.8AIHighAI2025-06-25
CVE-2025-6661 PDF-XChange Editor App Object Use-After-Free Remote Code Execution Vulnerability — PDF-XChange EditorCWE-416 7.8AIHighAI2025-06-25
CVE-2025-6662 PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5AIMediumAI2025-06-25
CVE-2025-2231 PDF-XChange Editor RTF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability — PDF-XChange EditorCWE-125 7.8AIHighAI2025-03-24
CVE-2025-0900 PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5 -2025-03-11
CVE-2025-0911 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5 -2025-02-11
CVE-2025-0910 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — PDF-XChange EditorCWE-787 7.8 -2025-02-11
CVE-2025-0909 PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 3.3 -2025-02-11
CVE-2025-0908 PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability — PDF-XChange EditorCWE-125 5.5 -2025-02-11

This page lists every published CVE security advisory associated with PDF-XChange. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.