Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Video Player For Youtube Project Subscribe
Filtered by product Video Player For Youtube
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24414 1 Video Player For Youtube Project 1 Video Player For Youtube 2021-10-28 3.5 LOW 5.4 MEDIUM
The Video Player for YouTube WordPress plugin before 1.4 does not sanitise or validate the parameters from its shortcode, allowing users with a role as low as contributor to set Cross-Site Scripting payload in them which will be triggered in the page/s with the embed malicious shortcode