Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in E2Pdf.Com e2pdf allows Reflected XSS.
This issue affects e2pdf: from n/a through 1.32.14.
This issue affects e2pdf: from n/a through 1.32.14.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress e2pdf Plugin to the latest available version (at least 1.32.15).
Workaround
No workaround given by the vendor.
References
History
Mon, 01 Jun 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in E2Pdf.Com e2pdf allows Reflected XSS. This issue affects e2pdf: from n/a through 1.32.14. | |
| Title | WordPress e2pdf plugin <= 1.32.14 - Reflected Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-01T16:18:08.230Z
Reserved: 2026-04-29T09:04:56.882Z
Link: CVE-2026-42681
No data.
Status : Deferred
Published: 2026-06-01T15:16:35.873
Modified: 2026-06-01T16:41:55.090
Link: CVE-2026-42681
No data.
OpenCVE Enrichment
No data.
Weaknesses