First published: Thu Oct 31 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Podlove Podlove Podcast Publisher allows Code Injection.This issue affects Podlove Podcast Publisher: from n/a through 4.1.13.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Podlove Podcast Publisher | <4.1.14 | |
Podlove Podcast Publisher | <=4.1.13 | |
Podlove Podcast Publisher | <=4.1.13 |
Update to 4.1.14 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43984 is identified as a Cross-Site Request Forgery (CSRF) vulnerability that can allow code injection.
To fix CVE-2024-43984, update Podlove Podcast Publisher to the latest version beyond 4.1.13.
CVE-2024-43984 affects Podlove Podcast Publisher from versions n/a through 4.1.13.
Yes, CVE-2024-43984 can potentially lead to remote code execution due to the code injection risk.
Yes, CVE-2024-43984 is a common type of CSRF vulnerability found in WordPress plugins like Podlove Podcast Publisher.