Known Vulnerabilities for products from Podlove

Listed below are 16 of the newest known vulnerabilities associated with the vendor "Podlove".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-32448 json Not Provided 2026-03-13 2026-04-01
CVE-2026-24385 json Not Provided 2026-03-05 2026-04-01
CVE-2025-58227 json Not Provided 2025-09-22 2026-04-23
CVE-2025-58204 json Not Provided 2025-08-27 2026-04-23
CVE-2024-52393 json Deserialization of Untrusted Data vulnerability in Eric Teubert Podlove Podcast Publisher podlove-podcasting-plugin-for-wordp... Not Provided 2024-11-14 2026-04-23
CVE-2024-32812 json Not Provided 2024-04-24 2026-04-28
CVE-2024-32712 json Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: from n... Not Provided 2024-05-14 2026-04-28
CVE-2024-32139 json Not Provided 2024-04-15 2026-04-28
CVE-2024-29915 json Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Podlove Podlove Podcast... Not Provided 2024-03-27 2026-04-28
CVE-2024-29788 json Not Provided 2024-03-27 2026-04-28
CVE-2024-1118 json The Podlove Subscribe button plugin for WordPress is vulnerable to UNION-based SQL Injection via the 'button' attribute of th... Not Provided 2024-02-07 2026-04-08
CVE-2024-1110 json The Podlove Podcast Publisher plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabi... Not Provided 2024-02-07 2026-04-08
CVE-2024-1109 json The Podlove Podcast Publisher plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability c... Not Provided 2024-02-07 2026-04-08
CVE-2023-25481 json Cross-Site Request Forgery (CSRF) vulnerability in Podlove Podlove Subscribe button plugin <= 1.3.7 versions. 8.8 - HIGH 2023-05-23 2023-05-26
CVE-2023-25479 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Podlove Podlove Subscribe button plugin <= 1.3.7 versions. 4.8 - MEDIUM 2023-04-25 2023-04-28
CVE-2023-25472 json Cross-Site Request Forgery (CSRF) vulnerability in Podlove Podlove Podcast Publisher plugin <= 3.8.3 versions. 8.8 - HIGH 2023-05-23 2023-05-26
CVE-2023-25046 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Podlove Podlove Podcast Publisher plugin <= 3.8.2 versions. 4.8 - MEDIUM 2023-04-07 2023-11-07
CVE-2021-24666 json The Podlove Podcast Publisher WordPress plugin before 3.5.6 contains a 'Social & Donations' module (not activated by default)... 9.8 - CRITICAL 2021-09-27 2021-10-05
CVE-2017-12949 json lib\modules\contributors\contributor_list_table.php in the Podlove Podcast Publisher plugin 2.5.3 and earlier for WordPress h... 8.8 - HIGH 2017-08-18 2017-08-24
CVE-2016-10942 json The podlove-podcasting-plugin-for-wordpress plugin before 2.3.16 for WordPress has SQL injection via the insert_id parameter ... 9.8 - CRITICAL 2019-09-13 2019-09-13

Known software with vulnerabilities from Podlove

Type Vendor Product Version
ApplicationPodlovePodlove Podcast Publisher-