cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forprint-my-blog print-my-blog

Direction: ascending
Jun 07, 2024

Print My Blog – Print, PDF, & eBook Converter WordPress Plugin # CVE-2024-33907

CVE, Research URL

CVE-2024-33907

Date
May 07, 2024
Research Description
Missing Authorization vulnerability in Michael Nelson Print My Blog print-my-blog.This issue affects Print My Blog: from n/a through <= 3.26.2.
Affected versions
max 3.26.3.
Status
vulnerable

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # CVE-2021-24636

CVE, Research URL

CVE-2021-24636

Date
Sep 20, 2021
Research Description
The Print My Blog WordPress Plugin before 3.4.2 does not enforce nonce (CSRF) checks, which allows attackers to make logged in administrators deactivate the Print My Blog plugin and delete all saved data for that plugin by tricking them to open a malicious link
Affected versions
max 3.11.4.
Status
vulnerable

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # CVE-2019-11565

CVE, Research URL

CVE-2019-11565

Date
Apr 27, 2019
Research Description
Server Side Request Forgery (SSRF) exists in the Print My Blog plugin before 1.6.7 for WordPress via the site parameter.
Affected versions
max 1.6.7.
Status
vulnerable
Jun 24, 2024

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # CVE-2024-37105

CVE, Research URL

CVE-2024-37105

Date
-
Research Description
Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin [print-my-blog] <= 3.27.0 (unfixed) CVE-2024-37105
Affected versions
max 3.27.0.
Status
vulnerable
Jul 01, 2024

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # CVE-2024-37271

CVE, Research URL

CVE-2024-37271

Date
Jul 22, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michael Nelson Print My Blog print-my-blog.This issue affects Print My Blog: from n/a through <= 3.27.0.
Affected versions
max 3.27.1.
Status
vulnerable
Nov 15, 2024

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # CVE-2022-4974

CVE, Research URL

CVE-2022-4974

Date
Oct 16, 2024
Research Description
The Freemius SDK, as used by hundreds of WordPress plugin and theme developers, was vulnerable to Cross-Site Request Forgery and Information disclosure due to missing capability checks and nonce protection on the _get_debug_log, _get_db_option, and the _set_db_option functions in versions up to, and including 2.4.2. Any WordPress plugin or theme running a version of Freemius less than 2.4.3 is vulnerable.
Affected versions
max 3.11.4.
Status
vulnerable
Aug 17, 2025

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # CVE-2025-54740

CVE, Research URL

CVE-2025-54740

Date
Aug 15, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michael Nelson Print My Blog print-my-blog allows Stored XSS.This issue affects Print My Blog: from n/a through <= 3.27.9.
Affected versions
max 3.27.10.
Status
vulnerable
Jun 14, 2026

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # CVE-2023-33999

CVE, Research URL

CVE-2023-33999

Date
Jun 11, 2026
Research Description
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in WPVibes WP Mail Log allows DOM-Based XSS. This issue affects WP Mail Log: from n/a through 1.0.2.
Affected versions
max 3.25.2.
Status
vulnerable
Jun 16, 2026

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # 2eca4db3b66d628165053f655cd49b3ea652fc42

Date
Feb 28, 2022
Research Description
Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin [print-my-blog] < 3.11.4 WordPress Print My Blog plugin < 3.11.4 - Sensitive Information Disclosure vulnerability Sensitive Information Disclosure vulnerability discovered in WordPress Print My Blog plugin (versions < 3.11.4).
Affected versions
max 3.11.4.
Status
vulnerable

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # ab9dc83d46c7665a47b4cf5820360b8c5a4fb970

Date
Feb 28, 2022
Research Description
Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin [print-my-blog] < 3.11.4 WordPress Print My Blog plugin < 3.11.4 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability discovered in WordPress Print My Blog plugin (versions < 3.11.4).
Affected versions
max 3.11.4.
Status
vulnerable

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # 6d8910c719b2a132ec93828cd37e418b19cac960

Date
Mar 04, 2022
Research Description
Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin [print-my-blog] < 3.11.4 Freemius SDK <= 2.4.2 - Missing Authorization Checks The Freemius SDK, as used by hundreds of WordPress plugin and theme developers, was vulnerable to Cross-Site Request Forgery and Information disclosure due to missing capability checks and nonce protection on the _get_debug_log, _get_db_option, and the _set_db_option functions in versions up to, and including 2.4.2. Any WordPress plugin or theme running a version of Freemius less than 2.4.3 is vulnerable.
Affected versions
max 3.11.4.
Status
vulnerable

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # d05dd9429255aad4710646a4e2171b648c1a5ba2

Date
Apr 27, 2019
Research Description
Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin [print-my-blog] < 1.6.6 WordPress Print My Blog plugin <= 1.6.5 - Unauthenticated Server Side Request Forgery (SSRF) vulnerability Unauthenticated Server Side Request Forgery (SSRF) vulnerability found by Magnus K. Stubman in WordPress Print My Blog plugin (versions <= 1.6.5).
Affected versions
max 1.6.6.
Status
vulnerable

Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin # 8f1161f2f4cbfede1813502c1a1e298519419671

Date
Jun 20, 2022
Research Description
Print My Blog &#8211; Print, PDF, &amp; eBook Converter WordPress Plugin [print-my-blog] < 3.15.9 Print My Blog – Print, PDF, & eBook Converter <= 3.15.8 - Unprotected AJAX Actions The Print My Blog – Print, PDF, & eBook Converter plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on several functions hooked via AJAX actions in versions up to, and including, 3.15.8. This makes it possible for authenticated attackers with subscriber-level permissions and above to modify the plugin's settings and inject malicious JavaScript. The affected AJAX actions are: wp_ajax_pmb_save_project_main, wp_ajax_pmb_post_search, wp_ajax_pmb_add_print_material, wp_ajax_pmb_reduce_credits, wp_ajax_pmb_report_error, and wp_ajax_pmb_duplicate_print_material. This could also be exploited via Cross-Site Request Forgery.
Affected versions
max 3.15.9.
Status
vulnerable