WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Save as PDF Plugin by PDFCrowd

Add a PDF download button to WordPress in minutes. Visitors can save pages or posts as PDF with one click.

9Reported vulnerabilities
8.1Highest CVSS score
4.6.0Latest version
1,000+Active installs

What to do now

Update Save as PDF Plugin by PDFCrowd to 4.5.6 or later. 9 of these have a fixed version available. Updating resolves them.

Plugin last updated: August 13, 2026 / Tested up to WordPress: 7.1 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2025-24671 High 8.1 0.5% 4.4.0 and earlier 4.4.1 January 21, 2025
CVE-2024-10891 Medium 6.4 0.3% Before 4.2.2 4.2.2 November 20, 2024
CVE-2024-35649 Medium 6.4 0.3% 3.2.3 and earlier 3.3.0 June 3, 2024
CVE-2024-33684 Medium 6.4 0.3% 3.2.0 and earlier 3.2.1 April 26, 2024
CVE-2025-59552 Medium 6.4 0.2% 4.5.2 and earlier 4.5.3 September 22, 2025
CVE-2026-0862 Medium 6.1 0.2% 0 to 4.5.5 (inclusive) 4.5.6 January 24, 2026
CVE-2024-37549 Medium 4.4 0.3% 4.0.0 and earlier 4.0.1 July 6, 2024
CVE-2024-31930 Medium 4.4 0.3% 3.2.1 and earlier 3.2.2 April 10, 2024
CVE-2023-40668 Medium 4.4 0.4% 2.16.0 and earlier 2.16.1 August 21, 2023

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.