Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-49923


Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows DOM-Based XSS.This issue affects Seriously Simple Podcasting: from n/a through <= 3.11.1.


Published

2025-10-22T15:15:38.193

Last Modified

2025-12-05T00:33:30.743

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application castos seriously_simple_podcasting < 3.12.0 Yes

References