Input validation vulnerability in Podlove Podcast Publisher 4.1.13

The Podlove Podcast Publisher plugin for WordPress, which is used to publish podcasts, has a security flaw that could be exploited by hackers. This flaw, called Stored Cross-Site Scripting, affects versions up to 4.1.13. Basically, the plugin doesn’t properly clean up or protect against harmful code, allowing attackers with certain levels of access to insert their own code into pages. This code could then be executed whenever a user visits the affected page.

Detected in:

Podlove Podcast Publisher open vulnerable versions: >= * <= 4.1.13

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.