CVE-2025-66061: WordPress Seriously Simple Podcasting plugin <= 3.13.0 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows Cross Site Request Forgery.This issue affects Seriously Simple Podcasting: from n/a through <= 3.13.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-66061?
CVE-2025-66061 is classified as a Cross-Site Request Forgery (CSRF) vulnerability, which is often considered to have a medium severity.
How do I fix CVE-2025-66061?
To fix CVE-2025-66061, update the Seriously Simple Podcasting plugin to version 3.13.1 or later.
What versions are affected by CVE-2025-66061?
CVE-2025-66061 affects all Seriously Simple Podcasting versions up to and including 3.13.0.
What impact does CVE-2025-66061 have on my website?
The vulnerability can allow attackers to perform unauthorized actions on behalf of users, potentially compromising site security.
Is CVE-2025-66061 being actively exploited?
There have been reports indicating that CVE-2025-66061 may be actively targeted in the wild, making immediate action necessary.