
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Security & Risk Analysis
wordpress.org/plugins/pdf-printGenerate PDF files and print WordPress posts/pages. Customize document header/footer styles and appearance.
Is PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Safe to Use in 2026?
Generally Safe
Score 99/100PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin has a strong security track record. Known vulnerabilities have been patched promptly.
The 'pdf-print' plugin v2.4.6 exhibits a mixed security posture. On the positive side, the static analysis reveals a significant number of entry points (8) with zero reported as unprotected, and a high percentage of output escaping (88%), along with robust nonce and capability checks. This suggests a conscious effort to implement security measures. However, the presence of unsanitized path flows in the taint analysis is a notable concern, indicating potential risks of directory traversal or similar vulnerabilities even without critical or high severity findings. The plugin's vulnerability history, with three previously disclosed medium-severity CVEs, all of which appear to be patched based on the 'Currently unpatched: 0' status, primarily revolving around Cross-site Scripting (XSS), indicates past struggles with input sanitization. While the latest vulnerability was in 2017, the pattern of XSS suggests that developers should remain vigilant about how user-provided data is handled.
Overall, while the current version shows improvements in its security implementations, the taint analysis findings and historical XSS vulnerabilities warrant caution. The low number of unprotected entry points is a strength, but the unsanitized paths are a weakness that could be exploited. The lack of critical or high vulnerabilities in the current analysis is reassuring, but the plugin's past suggests a need for ongoing security reviews to prevent recurrence of issues.
Key Concerns
- Unsanitized path flows in taint analysis
- SQL queries not using prepared statements
- Medium severity CVEs in history
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
PDF & Print by BestWebSoft < 2.0.3 - Reflected Cross-Site Scripting
Download PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin <= 1.9.3 - Cross-Site Scripting
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin < 1.7.5 - Cross-Site Scripting
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Attack Surface
AJAX Handlers 6
Shortcodes 2
WordPress Hooks 43
Maintenance & Trust
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Maintenance & Trust
Maintenance Signals
Community Trust
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Alternatives
PDF Poster – Display PDF Files with Custom Viewer
pdf-poster
PDF Poster lets you embed PDF files in WordPress using a responsive viewer and block support, including full-screen, download, and print options.
WP PDF Generator
wp-pdf-generator
Simply helps you to get your web page download as pdf
Document Engine – Download Posts as PDF, PDF Embedder, Posts to PDF
document-engine
Document Engine is WordPress to PDF plugin that convert any post type to PDF format & can embed pdf document with PDF Viewer block
WPMK PDF Generator
wpmk-pdf-generator
This Free Plugin will provide you to add download html to pdf
PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin Developer Profile
17 plugins · 207K total installs
How We Detect PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pdf-print/css/pdfprint.css/wp-content/plugins/pdf-print/js/pdfprint.js/wp-content/plugins/pdf-print/js/pdfPrint-print-page.js/wp-content/plugins/pdf-print/js/pdfPrint-pdf-page.js/wp-content/plugins/pdf-print/js/pdfprint.js/wp-content/plugins/pdf-print/js/pdfPrint-print-page.js/wp-content/plugins/pdf-print/js/pdfPrint-pdf-page.jspdf-print/css/pdfprint.css?ver=pdf-print/js/pdfprint.js?ver=pdf-print/js/pdfPrint-print-page.js?ver=pdf-print/js/pdfPrint-pdf-page.js?ver=HTML / DOM Fingerprints
bws-pdf-printbws_pdf_print_pdf_buttonbws_pdf_print_print_buttonpdfprnt_shortcode_initpdfprnt_options[pdf[print]