CVE-2023-30778: WordPress PowerPress Podcasting Plugin <= 10.0.1 is vulnerable to Cross Site Scripting (XSS)
Published Aug 15, 2023
·Updated
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Blubrry PowerPress Podcasting plugin by Blubrry plugin <= 10.0.1 versions.
Affected Software
1 affected component
Blubrry Powerpress Wordpress<=10.0.1
Remediation
Information
Update to 10.0.2 or a higher version.
Event History
Aug 15, 2023
CVE Published
via MITRE·12:40 PM
Data Sourced
via MITRE·12:40 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2023-30778.
2
What is the title of this vulnerability?
The title of this vulnerability is Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Blubrry PowerPress Podcasting plugin.
3
What is the severity of CVE-2023-30778?
The severity of CVE-2023-30778 is medium with a severity value of 5.5.
4
What software versions are affected by CVE-2023-30778?
Blubrry PowerPress Podcasting plugin versions <= 10.0.1 are affected by CVE-2023-30778.
5
How can I fix the Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Blubrry PowerPress Podcasting plugin?
To fix the vulnerability, update the Blubrry PowerPress Podcasting plugin to a version higher than 10.0.1.