cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forpdf-poster pdf-poster

Direction: descending
Mar 29, 2026

PDF Poster – PDF Embedder Plugin for WordPress # CVE-2026-32416

CVE, Research URL

CVE-2026-32416

Date
Mar 14, 2026
Research Description
Missing Authorization vulnerability in bPlugins PDF Poster pdf-poster allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PDF Poster: from n/a through <= 2.4.0.
Affected versions
max 2.4.0.
Status
vulnerable
Jun 07, 2024

PDF Poster &#8211; PDF Embedder Plugin for WordPress # CVE-2024-23508

CVE, Research URL

CVE-2024-23508

Date
Jan 31, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bPlugins PDF Poster – PDF Embedder Plugin for WordPress allows Reflected XSS.This issue affects PDF Poster – PDF Embedder Plugin for WordPress: from n/a through 2.1.17.
Affected versions
max 2.1.18.
Status
vulnerable

PDF Poster &#8211; PDF Embedder Plugin for WordPress # CVE-2024-4367

CVE, Research URL

CVE-2024-4367

Date
May 14, 2024
Research Description
A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
Affected versions
max 2.1.22.
Status
vulnerable