Access violation vulnerability in Document Embedder – Embed PDFs, Word, Excel, and Other Files 2.0.0

The Document Embedder plugin for WordPress, which allows users to embed PDFs, Word documents, Excel files and other types of files, has a security vulnerability. This means that unauthorized people can access, change or delete the data stored in the plugin. This problem exists in all versions of the plugin, including the latest one (2.0.0). The issue is caused by the plugin not checking if a user has the proper authorization to perform certain actions, such as saving, getting, or deleting documents. This makes it possible for attackers who are not logged in to create, view, edit, or delete any document in the plugin.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.