OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-104407

HIGH · CVSS 7.1 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-10-05 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

Blubrry Podcasting PowerPress versions up to 11.17.9 are susceptible to a Cross-Site Request Forgery (CSRF) vulnerability, which could allow attackers to perform unauthorized actions on behalf of authenticated users. This high-severity flaw poses a significant risk to website integrity and user data, making it critical for organizations using this plugin to prioritize immediate patching or mitigation efforts. Users of the affected PowerPress Podcasting plugin should take action to secure their installations against potential exploitation.

CVE
CVE-2026-104407
Severity
HIGH
CVSS
7.1
EPSS
0.10%

Original NVD Description

Cross-Site Request Forgery (CSRF) vulnerability in Blubrry Podcasting PowerPress Podcasting powerpress allows Cross Site Request Forgery.This issue affects PowerPress Podcasting: from n/a through 11.17.9.