CVE-2023-0447
Published on: Not Yet Published
Last Modified on: 01/23/2023 05:17:00 PM UTC
Certain versions of My YouTube Channel from Urkekg contain the following vulnerability:
The My YouTube Channel plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the clear_all_cache function in versions up to, and including, 3.0.12.1. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to clear the plugin's cache.
- CVE-2023-0447 has been assigned by
[email protected] to track the vulnerability
- Affected Vendor/Software:
urkekg - My YouTube Channel version = *
CVE References
Description | Tags ⓘ | Link |
---|---|---|
403 Forbidden | plugins.trac.wordpress.org text/html Inactive LinkNot Archived |
![]() |
My YouTube Channel <= 3.0.12.1 - Missing Authorization | www.wordfence.com text/html |
![]() |
403 Forbidden | plugins.trac.wordpress.org text/html Inactive LinkNot Archived |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Software
Vendor | Product | Version |
---|---|---|
Urkekg | My_YouTube_Channel | = * |
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2023-0447 : The My YouTube Channel plugin for WordPress is vulnerable to authorization bypass due to a missing… twitter.com/i/web/status/1… | 2023-01-23 17:07:40 |