Extension WordPress
Vulnérabilités YouTube Embed, Playlist and Popup by WpDevArt
Cette page rassemble les failles publiées pour YouTube Embed, Playlist and Popup by WpDevArt, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de YouTube Embed, Playlist and Popup by WpDevArt
3 fiches
Multiple Plugins <= (Various Versions) – Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via ThickBox JavaScript Library
Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled ThickBox JavaScript library (version 3.1) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible…
*-2.6.7
Non indiqué
03/07/2025
YouTube Embed <= 2.6.3 – Authenticated (Admin+) Stored Cross-Site Scripting
The YouTube Embed plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.6.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrative-level permissions and…
*-2.6.3
2.6.4
23/01/2023
YouTube Embed, Playlist and Popup <= 2.3.8 – Contributor+ Stored Cross-Site Scripting
The YouTube Embed, Playlist and Popup by WpDevArt WordPress plugin before 2.3.9 did not escape, validate or sanitise some of its shortcode options, available to users with a role as low as Contributor, leading to an authenticated Stored…
[*, 2.3.9)
2.3.9
28/06/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.