Pods – Custom Content Types and Fields

Vulnerabilities 20Slug podsLatest version 3.3.8WordPress.org →

Minimum safe version

3.2.8.2

Update to 3.2.8.2 or later to address 20 fixable vulnerabilities

Latest available3.3.8
Medium 4.1
2025-03-23< 3.2.8.2

Pods – Custom Content Types and Fields <= 3.2.8.1 - Authenticated (Admin+) Stored Cross-Site Scripting

Critical 10.0
2024-06-28< 3.2.2

WordPress Pods Plugin 3.2.3 is vulnerable to Backdoor

N/A
< 2.5.1.2

Pods 1.4.7 &lt;= 2.5.1.1 - Blind SQL Injection

N/A
< 2.7.29

Pods &lt; 2.7.29 - Multiple Authenticated Stored Cross-Site Scripting (XSS)

N/A
2023-07-19< 2.8.23

WordPress Pods Plugin <= 2.7.31 is vulnerable to Cross Site Scripting (XSS)

N/A
2023-01-20< 2.9.11

Pods <= 2.9.10.2 - Cross-Site Request Forgery

N/A
2015-03-16< 2.5.1.2

Pods – Custom Content Types and Fields < 2.5.1.2 - SQL Injection

N/A
2021-08-06< 2.7.29

Pods – Custom Content Types and Fields <= 2.7.28 - Authenticated (Admin+) Cross-Site Scripting

N/A
2015-03-16< 2.5.1.2

WordPress Pods Plugin <= 2.5.1.1 - Blind SQL Injection