plugin

Save As Pdf Vulnerabilities

2 known security issues reported for the Save As Pdf WordPress plugin. Most recent disclosed Nov 12, 2025.

1 medium

Running Save As Pdf on your site? Check whether your installed version is affected.

Scan your site free

Save as PDF Button <= 1.9.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via restpackpdfbutton Shortcode

medium

The Save as PDF Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's restpackpdfbutton shortcode in all versions up to, and including, 1.9.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, wi...

CVSS:
6.4
Affected:
up to 1.9.2
Fix:
No patched version reported
Disclosed:
Nov 12, 2025

CVE-2025-8397 on NVD →

Save as PDF Button [save-as-pdf] <= 1.9.2 (unfixed)

unknown
Affected:
up to 1.9.2
Fix:
No patched version reported

CVE-2025-8397 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database