Wpswings

Pdf Generator For Wordpress

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Published 09.09.2025 16:33:18
  • Last modified 11.09.2025 17:14:25

Missing Authorization vulnerability in WP Swings PDF Generator for WordPress allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects PDF Generator for WordPress: from n/a through 1.5.4.

Exploit
  • EPSS 10.32%
  • Published 06.02.2023 20:15:11
  • Last modified 26.03.2025 19:15:21

The PDF Generator for WordPress plugin before 1.1.2 includes a vendored dompdf example file which is susceptible to Reflected Cross-Site Scripting and could be used against high privilege users such as admin