CVE-2026-92807

CVE-2026-92807 published: The Save as PDF Plugin by PDFCrowd plugin for WordPress is vulnerable to Arbitrary Function Invocation in all versions up to, and including, 4.6.1 via the `pdf_created_callback` shortcode attribute. The `eval_shortcode()` function copies any non-`button_`/n...

View full NVD advisory → ← Back to CVE watch