📦 Podlove Podcast Publisher

by Podlove

🔍 What is Podlove Podcast Publisher?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-24666

CRITICAL CVSS 9.8 Sep 27, 2021

This CVE describes a SQL injection vulnerability in the Podlove Podcast Publisher WordPress plugin's 'Social & Donations' module. Attackers can exploit unauthenticated REST API endpoints to execute ar...

CVE-2016-10942

CRITICAL CVSS 9.8 Sep 13, 2019

This vulnerability allows attackers to execute arbitrary SQL commands through the insert_id parameter in the Podlove Podcasting Plugin for WordPress. It affects WordPress sites using vulnerable versio...

CVE-2024-32139

HIGH CVSS 8.5 Apr 15, 2024

This SQL injection vulnerability in the Podlove Podcast Publisher WordPress plugin allows attackers to execute arbitrary SQL commands on the database. It affects all WordPress sites using the plugin u...

CVE-2024-29915

HIGH CVSS 7.1 Mar 27, 2024

This vulnerability allows attackers to inject malicious scripts into web pages generated by Podlove Podcast Publisher, which are then executed in victims' browsers. It affects all WordPress sites usin...

CVE-2024-13730

MEDIUM CVSS 4.8 May 15, 2025

This vulnerability allows high-privilege WordPress users (like administrators) to inject malicious scripts into plugin settings, which then execute when other users view those settings. It affects Wor...

CVE-2025-1383

MEDIUM CVSS 4.3 Mar 6, 2025

The Podlove Podcast Publisher WordPress plugin has a CSRF vulnerability that allows unauthenticated attackers to delete episode transcripts by tricking administrators into clicking malicious links. Al...