Home/Product/castos seriously simple podcasting
Product

castos seriously simple podcasting

12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-66061
< 3.14.0
Cross-Site Request Forgery (CSRF) vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows Cro
4.3MEDIUM
CVE-2025-66060
< 3.14.0
Missing Authorization vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows Exploiting Inco
5.3MEDIUM
CVE-2025-66059
< 3.14.0
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Craig Hewitt Seriously Simple Podcasti
5.3MEDIUM
CVE-2025-62882
< 3.14.0
Missing Authorization vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows Exploiting Inco
4.3MEDIUM
CVE-2025-49923
< 3.12.0
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Craig Hewitt Seriously Simpl
5.9MEDIUM
CVE-2025-46261
< 3.10.0
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Craig Hewitt Seriously Simpl
5.9MEDIUM
CVE-2024-9667
< 3.6.0
The Seriously Simple Podcasting plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_a
6.1MEDIUM
CVE-2024-3751
< 3.3.0
The Seriously Simple Podcasting WordPress plugin before 3.3.0 does not sanitise and escape some of its settings, which could allow
4.8MEDIUM
CVE-2024-25599
< 3.1.0
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Craig Hewitt Seriously Simpl
7.1HIGH
CVE-2023-6444
< 3.0.0
The Seriously Simple Podcasting WordPress plugin before 3.0.0 discloses the Podcast owner's email address (which by default is the
5.3MEDIUM
CVE-2022-4571
< 2.19.1
The Seriously Simple Podcasting WordPress plugin before 2.19.1 does not validate and escape some of its shortcode attributes befor
5.4MEDIUM
CVE-2022-40132
<= 2.16.0
Cross-Site Request Forgery (CSRF) vulnerability in Seriously Simple Podcasting plugin <= 2.16.0 at WordPress, leading to plugin se
5.4MEDIUM
threatengine.sh