PT-2025-44695 · WordPress · Document Library Lite
Avraham Shemesh
+1
·
Published
2025-11-01
·
Updated
2025-11-15
·
CVE-2025-11174
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Document Library Lite versions prior to 1.1.7
Description
The Document Library Lite plugin for WordPress has an issue with authorization. An unauthenticated AJAX action,
dll load posts, exposes a JSON table of document data without proper checks. The args array accepted by this handler allows attackers to retrieve unpublished document titles and content, including those with draft, pending, or future status. The vulnerable API endpoint is /wp-admin/admin-ajax.php. The status parameter within the args array is attacker-controlled.Recommendations
Update Document Library Lite to version 1.1.7 or later.
Fix
Improper Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Document Library Lite