Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress Podlove Podcast Publisher Plugin to the latest available version (at least 4.5.5).
Workaround
No workaround given by the vendor.
References
History
Thu, 20 Aug 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Eric Teubert
Eric Teubert podlove Podcast Publisher Wordpress Wordpress wordpress |
|
| Vendors & Products |
Eric Teubert
Eric Teubert podlove Podcast Publisher Wordpress Wordpress wordpress |
Thu, 20 Aug 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions. | |
| Title | WordPress Podlove Podcast Publisher plugin <= 4.5.4 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-08-20T12:07:12.178Z
Reserved: 2026-07-27T14:00:21.730Z
Link: CVE-2026-66615
No data.
Status : Deferred
Published: 2026-08-20T12:16:35.073
Modified: 2026-08-20T12:48:31.843
Link: CVE-2026-66615
No data.
OpenCVE Enrichment
Updated: 2026-08-20T14:30:03Z
Weaknesses