CVE-2025-66059: WordPress Seriously Simple Podcasting plugin <= 3.13.0 - Sensitive Data Exposure vulnerability
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows Retrieve Embedded Sensitive Data.This issue affects Seriously Simple Podcasting: from n/a through <= 3.13.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-66059?
CVE-2025-66059 is considered a critical vulnerability due to its potential for exposing sensitive system information.
How do I fix CVE-2025-66059?
To fix CVE-2025-66059, upgrade Seriously Simple Podcasting to version 3.13.1 or later.
What type of data is at risk with CVE-2025-66059?
CVE-2025-66059 exposes embedded sensitive data within the Seriously Simple Podcasting plugin.
Which versions are affected by CVE-2025-66059?
CVE-2025-66059 affects Seriously Simple Podcasting from version n/a up to and including version 3.13.0.
Who is affected by CVE-2025-66059?
Users of Craig Hewitt's Seriously Simple Podcasting plugin for WordPress, particularly those using version 3.13.0 or earlier, are affected by CVE-2025-66059.