PT-2026-48793 · Unknown · Clipbucket

CVE-2026-47238

·

Published

2026-06-11

·

Updated

2026-06-13

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions ClipBucket versions prior to 5.5.3 - #133
Description An Insecure Direct Object Reference (IDOR) exists in the video subtitle editor of this open source video sharing platform. Due to a lack of authorization, an authenticated user can modify subtitles belonging to other users, including uploading new subtitles, editing existing names, or deleting them.
Recommendations Update to version 5.5.3 - #133.

Exploit

Fix

Incorrect Authorization

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-47238

Affected Products

Clipbucket