CVE-2026-16567

Summary

The Document Embedder WordPress plugin before 2.3.1 does not check a document's status before issuing a download token and streaming the file, allowing unauthenticated attackers to download arbitrary Document Embedder WordPress plugin before 2.3.1 documents, including private and draft ones, by enumerating IDs.

Affected Software

VendorProductVersion RangeStatus
UnknownDocument Embedder0 < 2.3.1affected

Weaknesses

  • CWE-639 Authorization Bypass Through User-Controlled Key

References