Input validation vulnerability in Podlove Podcast Publisher 4.0.9

The Podlove Podcast Publisher is a tool used with WordPress that has a security issue. This issue, called Reflected Cross-Site Scripting, can affect versions 4.0.9 and below. It happens because the plugin does not properly clean up the information it receives and sends out. This means that someone who is not signed in can put their own code onto a page and make it run if they can get a user to do something, like click on a link.

Detected in:

Podlove Podcast Publisher open vulnerable versions: >= * <= 4.0.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.