CVE-2025-49984: WordPress PowerPress Podcasting plugin <= 11.13.11 - Server Side Request Forgery (SSRF) Vulnerability
Server-Side Request Forgery (SSRF) vulnerability in Angelo Mandato PowerPress Podcasting allows Server Side Request Forgery. This issue affects PowerPress Podcasting: from n/a through 11.12.11.
Other sources
Server-Side Request Forgery (SSRF) vulnerability in blubrry PowerPress Podcasting powerpress allows Server Side Request Forgery.This issue affects PowerPress Podcasting: from n/a through <= 11.13.11.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-49984?
CVE-2025-49984 is classified as a Server-Side Request Forgery (SSRF) vulnerability.
How do I fix CVE-2025-49984?
To fix CVE-2025-49984, update the PowerPress Podcasting plugin to the latest version beyond 11.12.11.
What versions are affected by CVE-2025-49984?
CVE-2025-49984 affects all versions of PowerPress Podcasting up to and including 11.12.11.
What impact does CVE-2025-49984 have on my system?
CVE-2025-49984 allows attackers to perform Server Side Request Forgery, potentially compromising server security.
Is CVE-2025-49984 easy to exploit?
Exploitation of CVE-2025-49984 may vary in complexity, often depending on the environment and configurations.