CVE-2026-1314 — exposed on the internet
CVE-2026-1314: CWE-862 Missing Authorization in iberezansky 3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery
Internet exposure observed by OffSeq scans · last 30 days
Found on 1 internet-exposed hosts by OffSeq scans; no in-the-wild exploitation has been observed against OffSeq honeypots in this window.
About CVE-2026-1314
CVE-2026-1314 is a medium severity vulnerability in the iberezansky 3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery WordPress plugin. It arises from a missing authorization check in the send_post_pages_json() function, allowing unauthenticated attackers to access metadata of flipbook pages, including those that are draft, private, or password-protected. This vulnerability affects all versions up to and including 1.16.17. There is no official patch or remediation guidance currently available from the vendor. The vulnerability does not impact integrity or availability, only confidentiality of metadata. No known exploits are reported in the wild at this time.
Vendor: iberezanskyCWE-862
OffSeq internet scanning found CVE-2026-1314 on 1 exposed hosts in the last 30 days. OffSeq honeypots have not recorded in-the-wild exploitation of this CVE in the current window — this page tracks its exposure footprint and status; if exploitation begins, the live honeypot signal will appear here.
Exposed-host countries
Exposed via
wordpress