Radio Player – Live Shoutcast, Icecast and Any Audio Stream Player

Vulnerabilities 17Slug radio-playerLatest version 2.0.91WordPress.org →Closed
Medium 6.1 Closed
2026-05-01< 2.0.83

CVE-2024-13362

Medium 5.4 Unfixed Closed
2026-01-23≤ 2.0.91

CVE-2026-24548

Medium 6.3 Closed
2024-10-16< 1.0.8

Freemius SDK <= 2.4.2 - Missing Authorization Checks

Medium 5.3 Closed
2024-08-17< 2.0.74

CVE-2023-4024

Medium 5.3 Closed
2024-08-17< 2.0.74

CVE-2023-4025

Medium 5.3 Closed
2024-08-17< 2.0.74

CVE-2023-4027

Medium 6.5 Closed
2024-04-25< 2.0.74

Radio Player <= 2.0.73 - Authenticated (Contributor+) Stored Cross-Site Scripting

N/A Closed
2023-07-18< 2.0.5

WordPress Radio Player – Live Shoutcast, Icecast and Audio Stream Player for WordPress Plugin < 2.0.5 is vulnerable to Cross Site Scripting (XSS)

N/A Closed
2022-03-04< 1.0.8

Freemius SDK <= 2.4.2 - Missing Authorization Checks

N/A Closed
2022-02-28< 1.0.8

WordPress "Radio Player – Live Shoutcast, Icecast and Audio Stream Player for WordPress" plugin < 1.0.8 - Sensitive Information Disclosure vulnerability

N/A Closed
2022-02-28< 1.0.8

WordPress "Radio Player – Live Shoutcast, Icecast and Audio Stream Player for WordPress" plugin < 1.0.8 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability