CVE-2024-32143: WordPress Podlove Podcast Publisher plugin <= 4.1.0 - Broken Access Control vulnerability
Published Jun 11, 2024
·Updated
Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: from n/a through 4.1.0.
Affected Software
3 affected components
podlove Podlove Podcast Publisher WordPress<4.1.1
podlove Podcast Publisher<=4.1.0
WordPress Podlove Podcast Publisher<=4.1.0
Remediation
Information
Update to 4.1.1 or a higher version.
Event History
Jun 11, 2024
CVE Published
via MITRE·05:03 PM
Data Sourced
via MITRE·05:03 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32143?
CVE-2024-32143 is classified as a high severity vulnerability due to its missing authorization issues.
2
What versions are affected by CVE-2024-32143?
CVE-2024-32143 affects Podlove Podcast Publisher versions up to and including 4.1.0.
3
How do I fix CVE-2024-32143?
To fix CVE-2024-32143, upgrade Podlove Podcast Publisher to version 4.1.1 or later.
4
What type of vulnerability is CVE-2024-32143?
CVE-2024-32143 is a missing authorization vulnerability that can lead to unauthorized access.
5
Is there a workaround for CVE-2024-32143?
Currently, the recommended action is to apply the available update rather than implementing a workaround.