Input validation vulnerability in DK PDF 1.9.6

The DK PDF plugin used on WordPress has a security issue called Reflected Cross-Site Scripting. This is because the plugin does not properly escape the URL, making it vulnerable to attacks from unauthorized users. This means that attackers could potentially inject harmful web scripts into pages if they can convince a user to click on a link.

Detected in:

DK PDF – WordPress PDF Generator fixed vulnerable versions: >= * <= 1.9.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.