Vulnerabilities and security researches forbetterdocs betterdocs
Direction: descendingAug 17, 2025
BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2025-7499
- CVE, Research URL
- Home page URL
- Date
- Aug 16, 2025
- Research Description
- The BetterDocs – Advanced AI-Driven Documentation, FAQ & Knowledge Base Tool for Elementor & Gutenberg with Encyclopedia, AI Support, Instant Answers plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_response function in all versions up to and including 4.1.1. This makes it possible for unauthenticated attackers to retrieve passwords for password-protected documents as well as the metadata of private and draft documents.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Aug 13, 2024
BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2024-43227
- CVE, Research URL
- Home page URL
- Date
- Aug 13, 2024
- Research Description
- Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloper BetterDocs allows Stored XSS.This issue affects BetterDocs: from n/a through 3.5.8.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Aug 11, 2024
BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2024-43129
- CVE, Research URL
- Home page URL
- Date
- Aug 13, 2024
- Research Description
- Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPDeveloper BetterDocs allows PHP Local File Inclusion.This issue affects BetterDocs: from n/a through 3.5.8.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Jun 10, 2024
BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2023-47762
- CVE, Research URL
- Home page URL
- Date
- Dec 09, 2024
- Research Description
- Missing Authorization vulnerability in WPDeveloper BetterDocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BetterDocs: from n/a through 2.5.2.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Jun 07, 2024
BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # 570a5ea4283ba5eedfe576e20fa6580f667ce12b
- CVE, Research URL
- Home page URL
- Date
- Sep 20, 2021
- Research Description
- BetterDocs – Advanced AI-Driven Documentation, FAQ & Knowledge Base Tool for Elementor & Gutenberg with Encyclopedia, AI Support, Instant Answers [betterdocs] >= 1.9.0 - <= 1.9.1 WordPress BetterDocs plugin <= 1.9.1 - Reflected Cross-Site Scripting (XSS) vulnerability Reflected Cross-Site Scripting (XSS) vulnerability discovered by WPScanTeam in WordPress BetterDocs plugin (versions <= 1.9.1).
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2024-2845
- CVE, Research URL
- Home page URL
- Date
- Apr 10, 2024
- Research Description
- The BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support & Instant Answer For Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 3.4.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2024-30226
- CVE, Research URL
- Home page URL
- Date
- Mar 28, 2024
- Research Description
- Deserialization of Untrusted Data vulnerability in WPDeveloper BetterDocs.This issue affects BetterDocs: from n/a through 3.3.3.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable