cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forbetterdocs betterdocs

Direction: descending
Aug 17, 2025

BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2025-7499

CVE, Research URL

CVE-2025-7499

Date
Aug 16, 2025
Research Description
The BetterDocs – Advanced AI-Driven Documentation, FAQ & Knowledge Base Tool for Elementor & Gutenberg with Encyclopedia, AI Support, Instant Answers plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_response function in all versions up to and including 4.1.1. This makes it possible for unauthenticated attackers to retrieve passwords for password-protected documents as well as the metadata of private and draft documents.
Affected versions
Min -, max -.
Status
vulnerable
Aug 13, 2024

BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2024-43227

CVE, Research URL

CVE-2024-43227

Date
Aug 13, 2024
Research Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloper BetterDocs allows Stored XSS.This issue affects BetterDocs: from n/a through 3.5.8.
Affected versions
Min -, max -.
Status
vulnerable
Aug 11, 2024

BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2024-43129

CVE, Research URL

CVE-2024-43129

Date
Aug 13, 2024
Research Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPDeveloper BetterDocs allows PHP Local File Inclusion.This issue affects BetterDocs: from n/a through 3.5.8.
Affected versions
Min -, max -.
Status
vulnerable
Jun 10, 2024

BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # CVE-2023-47762

CVE, Research URL

CVE-2023-47762

Date
Dec 09, 2024
Research Description
Missing Authorization vulnerability in WPDeveloper BetterDocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BetterDocs: from n/a through 2.5.2.
Affected versions
Min -, max -.
Status
vulnerable
Jun 07, 2024

BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support # 570a5ea4283ba5eedfe576e20fa6580f667ce12b

Date
Sep 20, 2021
Research Description
BetterDocs – Advanced AI-Driven Documentation, FAQ &amp; Knowledge Base Tool for Elementor &amp; Gutenberg with Encyclopedia, AI Support, Instant Answers [betterdocs] >= 1.9.0 - <= 1.9.1 WordPress BetterDocs plugin <= 1.9.1 - Reflected Cross-Site Scripting (XSS) vulnerability Reflected Cross-Site Scripting (XSS) vulnerability discovered by WPScanTeam in WordPress BetterDocs plugin (versions <= 1.9.1).
Affected versions
Min -, max -.
Status
vulnerable

BetterDocs – Best Documentation, FAQ &amp; Knowledge Base Plugin with AI Support # CVE-2024-2845

CVE, Research URL

CVE-2024-2845

Date
Apr 10, 2024
Research Description
The BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support & Instant Answer For Elementor & Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 3.4.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
Affected versions
Min -, max -.
Status
vulnerable

BetterDocs – Best Documentation, FAQ &amp; Knowledge Base Plugin with AI Support # CVE-2024-30226

CVE, Research URL

CVE-2024-30226

Date
Mar 28, 2024
Research Description
Deserialization of Untrusted Data vulnerability in WPDeveloper BetterDocs.This issue affects BetterDocs: from n/a through 3.3.3.
Affected versions
Min -, max -.
Status
vulnerable