Cross-Site Request Forgery (CSRF) vulnerability in Nazmul Ahsan MDC YouTube Downloader allows Stored XSS.This issue affects MDC YouTube Downloader: from n/a through 3.0.0.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 30 Sep 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Mdc Youtube Downloader Project
Mdc Youtube Downloader Project mdc Youtube Downloader |
|
CPEs | cpe:2.3:a:mdc_youtube_downloader_project:mdc_youtube_downloader:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Mdc Youtube Downloader Project
Mdc Youtube Downloader Project mdc Youtube Downloader |
Fri, 17 Jan 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 16 Jan 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross-Site Request Forgery (CSRF) vulnerability in Nazmul Ahsan MDC YouTube Downloader allows Stored XSS.This issue affects MDC YouTube Downloader: from n/a through 3.0.0. | |
Title | WordPress MDC YouTube Downloader plugin <= 3.0.0 - CSRF to Stored XSS vulnerability | |
Weaknesses | CWE-352 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-01-17T19:19:22.486Z
Reserved: 2025-01-16T11:27:31.286Z
Link: CVE-2025-23639

Updated: 2025-01-17T17:20:58.904Z

Status : Analyzed
Published: 2025-01-16T20:15:41.763
Modified: 2025-09-30T21:33:39.300
Link: CVE-2025-23639

No data.

No data.