Vulnerabilities (CVE)

Filtered by vendor Foxit Subscribe
Filtered by product Esign
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-66523 1 Foxit 1 Esign 2026-04-09 N/A 6.1 MEDIUM
URL parameters are directly embedded into JavaScript code or HTML attributes without proper encoding or sanitization. This allows attackers to inject arbitrary scripts when an authenticated user visits a crafted link. This issue affects na1.foxitesign.foxit.com: before 2026‑01‑16.