{"api_version":"1","generated_at":"2026-08-23T10:04:20+00:00","cve":"CVE-2026-18622","urls":{"html":"https://cve.report/CVE-2026-18622","api":"https://cve.report/api/cve/CVE-2026-18622.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2026-18622","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2026-18622"},"summary":{"title":"Foxit PDF Editor/Reader's signature-validation pop-up reports modified certified documents as valid","description":"Foxit PDF Editor/Reader inconsistently alerts users when signature fields are abnormally modified, including alterations to appearance, coordinates, or field duplication. This may mislead users into trusting tampered documents, since the UI cannot accurately reflect the actual integrity status of signatures.","state":"PUBLISHED","assigner":"Foxit","published_at":"2026-08-13 07:17:06","updated_at":"2026-08-13 15:19:35"},"problem_types":["CWE-451","CWE-451 CWE-451: User Interface (UI) Misrepresentation of Critical Information"],"metrics":[{"version":"3.1","source":"14984358-7092-470d-8f34-ade47a7658a2","type":"Secondary","score":"4.7","severity":"MEDIUM","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N","baseScore":4.7,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"}},{"version":"3.1","source":"CNA","type":"CVSS","score":"4.7","severity":"MEDIUM","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N","data":{"attackComplexity":"HIGH","attackVector":"LOCAL","availabilityImpact":"NONE","baseScore":4.7,"baseSeverity":"MEDIUM","confidentialityImpact":"NONE","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"UNCHANGED","userInteraction":"REQUIRED","vectorString":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N","version":"3.1"}}],"references":[{"url":"https://www.foxit.com/support/security-bulletins.html","name":"https://www.foxit.com/support/security-bulletins.html","refsource":"14984358-7092-470d-8f34-ade47a7658a2","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-18622","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-18622","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Foxit Software Inc.","product":"Foxit PDF Editor","version":"affected Versions 2026.1.2 and earlier","platforms":["Windows","MacOS"]},{"source":"CNA","vendor":"Foxit Software Inc.","product":"Foxit PDF Editor","version":"affected Versions 14.0.5 and earlier","platforms":["Windows","MacOS"]},{"source":"CNA","vendor":"Foxit Software Inc.","product":"Foxit PDF Editor","version":"affected Versions 13.2.5 and earlier","platforms":["Windows","MacOS"]},{"source":"CNA","vendor":"Foxit Software Inc.","product":"Foxit PDF Reader","version":"affected Versions 2026.1.2 and earlier","platforms":["Windows","MacOS"]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[{"source":"CNA","value":"Enzo da Rosa Brum, Frederico Schardong, and Ricardo Felipe Custódio, all of the Computer Security Laboratory (LabSEC), Federal University of Santa Catarina (UFSC), Brazil","lang":"en"}],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2026","cve_id":"18622","cve":"CVE-2026-18622","epss":"0.001220000","percentile":"0.023940000","score_date":"2026-08-14","updated_at":"2026-08-15 00:04:44"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"metrics":[{"other":{"content":{"id":"CVE-2026-18622","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","timestamp":"2026-08-13T14:15:06.149870Z","version":"2.0.3"},"type":"ssvc"}}],"providerMetadata":{"dateUpdated":"2026-08-13T14:15:16.968Z","orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP"},"title":"CISA ADP Vulnrichment"}],"cna":{"affected":[{"defaultStatus":"unaffected","platforms":["Windows","MacOS"],"product":"Foxit PDF Editor","vendor":"Foxit Software Inc.","versions":[{"status":"affected","version":"Versions 2026.1.2 and earlier"},{"status":"affected","version":"Versions 14.0.5 and earlier"},{"status":"affected","version":"Versions 13.2.5 and earlier"}]},{"defaultStatus":"unaffected","platforms":["Windows","MacOS"],"product":"Foxit PDF Reader","vendor":"Foxit Software Inc.","versions":[{"status":"affected","version":"Versions 2026.1.2 and earlier"}]}],"credits":[{"lang":"en","type":"finder","value":"Enzo da Rosa Brum, Frederico Schardong, and Ricardo Felipe Custódio, all of the Computer Security Laboratory (LabSEC), Federal University of Santa Catarina (UFSC), Brazil"}],"descriptions":[{"lang":"en","supportingMedia":[{"base64":false,"type":"text/html","value":"Foxit PDF Editor/Reader inconsistently alerts users when signature fields are abnormally modified, including alterations to appearance, coordinates, or field duplication. This may mislead users into trusting tampered documents, since the UI cannot accurately reflect the actual integrity status of signatures."}],"value":"Foxit PDF Editor/Reader inconsistently alerts users when signature fields are abnormally modified, including alterations to appearance, coordinates, or field duplication. This may mislead users into trusting tampered documents, since the UI cannot accurately reflect the actual integrity status of signatures."}],"impacts":[{"capecId":"CAPEC-148","descriptions":[{"lang":"en","value":"CAPEC-148: Content Spoofing"}]}],"metrics":[{"cvssV3_1":{"attackComplexity":"HIGH","attackVector":"LOCAL","availabilityImpact":"NONE","baseScore":4.7,"baseSeverity":"MEDIUM","confidentialityImpact":"NONE","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"UNCHANGED","userInteraction":"REQUIRED","vectorString":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N","version":"3.1"},"format":"CVSS","scenarios":[{"lang":"en","value":"GENERAL"}]}],"problemTypes":[{"descriptions":[{"cweId":"CWE-451","description":"CWE-451: User Interface (UI) Misrepresentation of Critical Information","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2026-08-13T07:00:23.071Z","orgId":"14984358-7092-470d-8f34-ade47a7658a2","shortName":"Foxit"},"references":[{"url":"https://www.foxit.com/support/security-bulletins.html"}],"source":{"discovery":"UNKNOWN"},"title":"Foxit PDF Editor/Reader's signature-validation pop-up reports modified certified documents as valid","x_generator":{"engine":"Vulnogram 1.0.4"}}},"cveMetadata":{"assignerOrgId":"14984358-7092-470d-8f34-ade47a7658a2","assignerShortName":"Foxit","cveId":"CVE-2026-18622","datePublished":"2026-08-13T07:00:23.071Z","dateReserved":"2026-08-03T08:05:24.886Z","dateUpdated":"2026-08-13T14:15:16.968Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-08-13 07:17:06","lastModifiedDate":"2026-08-13 15:19:35","problem_types":["CWE-451","CWE-451 CWE-451: User Interface (UI) Misrepresentation of Critical Information"],"metrics":{"cvssMetricV31":[{"source":"14984358-7092-470d-8f34-ade47a7658a2","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N","baseScore":4.7,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":1,"impactScore":3.6}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2026-08-13T14:15:06.149870Z","id":"CVE-2026-18622","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2026","CveId":"18622","Ordinal":"1","Title":"Foxit PDF Editor/Reader's signature-validation pop-up reports mo","CVE":"CVE-2026-18622","Year":"2026"},"notes":[{"CveYear":"2026","CveId":"18622","Ordinal":"1","NoteData":"Foxit PDF Editor/Reader inconsistently alerts users when signature fields are abnormally modified, including alterations to appearance, coordinates, or field duplication. This may mislead users into trusting tampered documents, since the UI cannot accurately reflect the actual integrity status of signatures.","Type":"Description","Title":"Foxit PDF Editor/Reader's signature-validation pop-up reports mo"}]}}}