CVE-2025-24671

Deserialization of Untrusted Data vulnerability in Pdfcrowd Dev Team Save as PDF save-as-pdf-by-pdfcrowd allows Object Injection.This issue affects Save as PDF: from n/a through <= 4.4.0.
Configurations

No configuration.

History

23 Apr 2026, 15:25

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

01 Apr 2026, 17:18

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de deserialización de datos no confiables en Pdfcrowd Save as PDF plugin by Pdfcrowd que permite la inyección de objetos. Este problema afecta al complemento Guardar como PDF de Pdfcrowd: desde n/a hasta 4.4.0.
Summary (en) Deserialization of Untrusted Data vulnerability in Pdfcrowd Save as PDF plugin by Pdfcrowd allows Object Injection. This issue affects Save as PDF plugin by Pdfcrowd: from n/a through 4.4.0. (en) Deserialization of Untrusted Data vulnerability in Pdfcrowd Dev Team Save as PDF save-as-pdf-by-pdfcrowd allows Object Injection.This issue affects Save as PDF: from n/a through <= 4.4.0.
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/save-as-pdf-by-pdfcrowd/vulnerability/wordpress-save-as-pdf-plugin-by-pdfcrowd-plugin-4-4-0-php-object-injection-vulnerability?_s_id=cve', 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/save-as-pdf-by-pdfcrowd/vulnerability/wordpress-save-as-pdf-plugin-by-pdfcrowd-plugin-4-4-0-php-object-injection-vulnerability?_s_id=cve -
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : unknown

27 Jan 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 15:15

Updated : 2026-04-23 15:25


NVD link : CVE-2025-24671

Mitre link : CVE-2025-24671

CVE.ORG link : CVE-2025-24671


JSON object : View

Products Affected

No product.

CWE
CWE-502

Deserialization of Untrusted Data