Pricing
Case studies
Login
Start trial
PowerPress Podcasting
blubrry
Developer
11.15.17
Latest version
30,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
23 patched
7 Mitigation rules
PHP Object Injection vulnerability
<= 11.15.10
25/02/2026
Cross Site Scripting (XSS) vulnerability
<= 11.15.13
13/02/2026
Authenticated (Contributor+) Arbitrary File Upload via 'powerpress_edit_post' vulnerability
<= 11.15.2
27/11/2025
Cross Site Request Forgery (CSRF) vulnerability
<= 11.13.12
08/11/2025
Server Side Request Forgery (SSRF) Vulnerability
<= 11.13.11
19/06/2025
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
<= 11.9.17
30/05/2025
Arbitrary File Upload Vulnerability
<= 11.12.5
23/04/2025
Author+ XSS via Podcast URL vulnerability
< 11.9.18
14/04/2025
Cross Site Scripting (XSS) Vulnerability
<= 11.12.5
09/04/2025
Server Side Request Forgery (SSRF) Vulnerability
<= 11.12.6
09/04/2025
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 11.9.18
10/10/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via media_url Parameter vulnerability
<= 11.9.10
12/07/2024
Injected Backdoor vulnerability
11.9.3-11.9.4
28/06/2024
Contributor+ Stored XSS vulnerability
< 11.0.12
17/10/2023
Authenticated(Contributor+) Stored Cross-Site Scripting via Media URL vulnerability
< 11.0.11
15/09/2023
Server Side Request Forgery (SSRF) vulnerability
<= 11.0.6
29/08/2023
Authenticated Stored Cross-Site Scripting Vulnerability
<= 10.2.3
07/06/2023
Cross Site Scripting (XSS) vulnerability
<= 10.0.1
17/04/2023
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
<= 10.0
12/04/2023
Multiple Authenticated Cross-Site Scripting (XSS) vulnerabilities
<= 8.6.1
14/05/2021
Authenticated Arbitrary File Upload leading to Remote Code Execution (RCE) vulnerability
<= 8.3.7
11/10/2020
XSS
<= 6.0.4
14/09/2015
XSS
<= 6.0.0
27/01/2015