Required CVE Record Information
Description
The PDF Generator for WordPress plugin before 1.1.2 includes a vendored dompdf example file which is susceptible to Reflected Cross-Site Scripting and could be used against high privilege users such as admin
Credits
- cydave finder
- WPScan coordinator
References 1 Total
- https://wpscan.com/vulnerability/6ac1259c-86d9-428b-ba98-7f3d07910644 exploitvdb-entrytechnical-description
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 1 Total
- https://wpscan.com/vulnerability/6ac1259c-86d9-428b-ba98-7f3d07910644 exploitvdb-entrytechnical-descriptionx_transferred