PT-2026-83901 · Vidiq · Vision For Youtube Extension
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
vidIQ Vision for YouTube Extension version 3.199.0
Description
A remote information disclosure issue exists in the postMessage Handler component. The flaw occurs within the
window.addEventListener() function when the vidiqEvent argument is manipulated.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Information Disclosure
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Vision For Youtube Extension