Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PenciDesign Penci Podcast allows DOM-Based XSS. This issue affects Penci Podcast: from n/a through 1.6.
Metrics
Affected Vendors & Products
Fixes
Solution
Update the WordPress Penci Podcast plugin to the latest available version (at least 1.7).
Workaround
No workaround given by the vendor.
References
History
Mon, 22 Sep 2025 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PenciDesign Penci Podcast allows DOM-Based XSS. This issue affects Penci Podcast: from n/a through 1.6. | |
Title | WordPress Penci Podcast Plugin <= 1.6 - Cross Site Scripting (XSS) Vulnerability | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-09-22T18:25:51.403Z
Reserved: 2025-09-17T18:01:11.731Z
Link: CVE-2025-59584

No data.

Status : Received
Published: 2025-09-22T19:16:26.663
Modified: 2025-09-22T19:16:26.663
Link: CVE-2025-59584

No data.

No data.