A vulnerability categorized as problematic has been discovered in freshlabs fresh Podcaster Plugin up to 1.0.7 on WordPress. This affects the function freshpodcaster of the component Shortcode Handler . Executing a manipulation of the argument attributes can lead to cross site scripting. This vulnerability is registered as CVE-2026-1382 . It is possible to launch the attack remotely. No exploit is available.