Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 31 Aug 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in BEN Group TubeBuddy for YouTube Extension up to 5.8.4 on Chrome. This impacts the function TBGlobal.GetToken of the file tubebuddymaster1.js. The manipulation of the argument t/c/r results in insufficient verification of data authenticity. It is possible to launch the attack remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure. | |
| Title | BEN Group TubeBuddy for YouTube Extension tubebuddymaster1.js TBGlobal.GetToken data authenticity | |
| First Time appeared |
Ben Group
Ben Group tubebuddy For Youtube Extension |
|
| Weaknesses | CWE-345 | |
| CPEs | cpe:2.3:a:ben_group:tubebuddy_for_youtube_extension:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ben Group
Ben Group tubebuddy For Youtube Extension |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-31T17:15:08.307Z
Reserved: 2026-08-31T05:15:50.097Z
Link: CVE-2026-82813
No data.
Status : Received
Published: 2026-08-31T18:17:24.110
Modified: 2026-08-31T18:17:24.110
Link: CVE-2026-82813
No data.
OpenCVE Enrichment
No data.