Pdf-Xchange Editor vulnerabilities
289 known vulnerabilities affecting pdf-xchange/pdf-xchange_editor.
Total CVEs
289
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH166MEDIUM106LOW17
Vulnerabilities
Page 14 of 15
CVE-2022-42397P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-42397 [MEDIUM] CWE-125 CVE-2022-42397: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of XPS files. Crafted data in an XPS file can tri
nvd
CVE-2022-41146P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-41146 [MEDIUM] CWE-125 CVE-2022-41146: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. Crafted data in a U3D file can trig
nvd
CVE-2022-41153P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-41153 [MEDIUM] CWE-125 CVE-2022-41153: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. Crafted data in a U3D file can trig
nvd
CVE-2022-42369P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-42369 [MEDIUM] CWE-125 CVE-2022-42369: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. Crafted data in a U3D file can trig
nvd
CVE-2022-42409P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-42409 [MEDIUM] CWE-125 CVE-2022-42409: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. Crafted data in a PDF file can trig
nvd
CVE-2022-42383P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.363.02023-01-26
CVE-2022-42383 [MEDIUM] CWE-125 CVE-2022-42383: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. Crafted data in a U3D file can trig
nvd
CVE-2022-42411P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-42411 [MEDIUM] CWE-125 CVE-2022-42411: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JPC files. Crafted data in a JPC file can trig
nvd
CVE-2022-42376P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.363.02023-01-26
CVE-2022-42376 [MEDIUM] CWE-125 CVE-2022-42376: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. Crafted data in a U3D file can trig
nvd
CVE-2022-42386P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.363.02023-01-26
CVE-2022-42386 [MEDIUM] CWE-125 CVE-2022-42386: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. Crafted data in a U3D file can trig
nvd
CVE-2022-42412P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-42412 [MEDIUM] CWE-125 CVE-2022-42412: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. Crafted data in a PDF file can trig
nvd
CVE-2022-42387P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.363.02023-01-26
CVE-2022-42387 [MEDIUM] CWE-125 CVE-2022-42387: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. Crafted data in a U3D file can trig
nvd
CVE-2022-42413P4MEDIUMCVSS 5.5fixed in 9.5.366.0v9.4.362.02023-01-26
CVE-2022-42413 [MEDIUM] CWE-125 CVE-2022-42413: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. Crafted data in a JP2 file can trig
nvd
CVE-2025-6646P4LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6646 [LOW] CWE-416 CVE-2025-6646: PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulner
PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The spec
nvd
CVE-2024-27330P4LOWCVSS 3.3v10.1.1.3812024-04-01
CVE-2024-27330 [LOW] CWE-125 CVE-2024-27330: PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Th
nvd
CVE-2024-27332P4LOWCVSS 3.3v10.1.1.3812024-04-01
CVE-2024-27332 [LOW] CWE-125 CVE-2024-27332: PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Th
nvd
CVE-2024-27331P4LOWCVSS 3.3v10.1.1.3812024-04-01
CVE-2024-27331 [LOW] CWE-125 CVE-2024-27331: PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Th
nvd
CVE-2025-0900P4LOWCVSS 3.3v10.4.0.3882025-03-11
CVE-2025-0900 [LOW] CWE-125 CVE-2025-0900: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The
nvd
CVE-2025-6658P4LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6658 [LOW] CWE-125 CVE-2025-6658: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The
nvd
CVE-2025-6656P4LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6656 [LOW] CWE-125 CVE-2025-6656: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The
nvd
CVE-2025-6652P4LOWCVSS 3.3v10.5.2.3952025-06-25
CVE-2025-6652 [LOW] CWE-125 CVE-2025-6652: PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The
nvd