Medium severity4.8NVD Advisory· Published Oct 31, 2023· Updated Jun 17, 2026
CVE-2023-5229
CVE-2023-5229
Description
The E2Pdf WordPress plugin before 1.20.20 does not sanitize and escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: <1.20.20
Package: https://wordpress.org/plugins/e2pdf
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/fb6ce636-9e0d-4c5c-bb95-dde1d2581245nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.