Libsyn is a podcast hosting and distribution platform whose vulnerability profile centers on its Publisher Hub product, with observed weaknesses clustering around information disclosure and cross-site scripting issues typical of web-facing content-management systems. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Libsyn over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-25057MEDIUM Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Libsyn Libsyn Publisher Hub.This issue affects Libsyn Publisher Hub: from n/a through 1.3.2. | Nov 30, 2023 | 5.3 | 18 | NO | NO |
CVE-2023-45835MEDIUM Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Libsyn Libsyn Publisher Hub plugin <= 1.4.4 versions. | Oct 25, 2023 | 6.1 | 18 | NO | NO |
CVE-2024-32140MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in libsyn Libsyn Publisher Hub libsyn-podcasting.This issue affects Libsyn Publis | Apr 15, 2024 | 5.4 | 16 | NO | NO |
CVE-2023-45834MEDIUM Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Libsyn Libsyn Publisher Hub.This issue affects Libsyn Publisher Hub: from n/a through 1.4.4. | Nov 30, 2023 | 5.3 | 16 | NO | NO |
CVE-2024-32141MEDIUM Cross-Site Request Forgery (CSRF) vulnerability in libsyn Libsyn Publisher Hub libsyn-podcasting.This issue affects Libsyn Publisher Hub: from n/a through <= 1.4.4. | Apr 15, 2024 | 4.3 | 15 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libsyn.
Media articles that mention a CVE ID that affects a product developed by Libsyn — matched by CVE ID, not by vendor name.