MEDIUMVulnerability

CVE-2026-82813

A vulnerability was detected in BEN Group TubeBuddy for YouTube Extension up to 5.8.4 on Chrome. This impacts the function TBGlobal.GetToken of the file tubebuddymaster1.js. The manipulation of the argument t/c/r results in insufficient verification of data authenticity. It is possible to launch the attack remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure.

Properties

severity
MEDIUM
score
5.4
epss_score
0.0015
cve_id
CVE-2026-82813
vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
published_at
2026-08-31T18:17:24.110
last_modified
2026-09-01T20:48:22.513
epss_percentile
0.04504

Related Entities (3)

ENRICHED_BY (1)

[Source]FIRST EPSS

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (1)

[Weakness]Insufficient Verification of Data Authenticity

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-82813 — Ninja Signal Threat Intelligence | Ninja Signal