CVE-2023-53918
17.12.2025, 23:15
PodcastGenerator 3.2.9 contains a stored cross-site scripting vulnerability in the episode title field accessible through the episodes upload interface (episodes_upload.php). Malicious JavaScript payloads injected into episode titles execute when administrators view the episodes list page (episodes_list.php).
| Vendor | Product | Version |
|---|---|---|
| podcastgenerator | podcast_generator | 3.2.9 |
𝑥
= Vulnerable software versions