Input validation vulnerability in Export WP Page to Static HTML/CSS 2.1.9

The Export WP Page to Static HTML/CSS plugin for WordPress is vulnerable to a security flaw known as Cross-Site Request Forgery. This flaw affects versions up to and including 2.1.9 and is due to incorrect or missing validation on several AJAX actions. This means that an unauthenticated attacker can perform unauthorized actions, such as creating an HTML export, if they can get a site administrator to do something like click on a link.

Detected in:

Export WP Page to Static HTML & PDF fixed vulnerable versions:
Export WP Page to Static HTML/CSS open vulnerable versions: >= * <= 2.1.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.