Input validation vulnerability in Save as PDF Plugin by Pdfcrowd 4.0.0

The Save as PDF plugin for WordPress, created by Pdfcrowd, has a security issue in versions 4.0.0 and below. This is because the plugin does not properly clean and protect the input and output of data. As a result, hackers who have administrator-level access can insert harmful scripts into pages, which will then run whenever someone views those pages. This only affects sites with multiple installations and sites that have disabled the unfiltered_html feature.

Detected in:

Save as PDF plugin by Pdfcrowd open vulnerable versions: >= * <= 4.0.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.