Code Injection Vulnerability in Podlove Podcast Publisher
CVE-2024-43984
8.8HIGH
What is CVE-2024-43984?
A Cross-Site Request Forgery (CSRF) vulnerability found in Podlove Podcast Publisher allows malicious actors to perform code injection attacks. This security flaw affects versions of the Podlove Podcast Publisher up to and including 4.1.13, enabling unauthorized actions without proper user authentication. Websites utilizing this plugin may be at risk, allowing attackers to execute arbitrary code and potentially compromising the integrity of the system.
Affected Version(s)
Podlove Podcast Publisher <= 4.1.13