Medium severity5.4NVD Advisory· Published Aug 31, 2026
CVE-2026-82813
CVE-2026-82813
Description
A vulnerability was detected in BEN Group TubeBuddy for YouTube Extension up to 5.8.4 on Chrome. This impacts the function TBGlobal.GetToken of the file tubebuddymaster1.js. The manipulation of the argument t/c/r results in insufficient verification of data authenticity. It is possible to launch the attack remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=5.8.4
Patches
Vulnerability mechanics
References
5- github.com/xryj920/chrome_extensions/blob/main/BEN%20Group%2C%20Inc.%20TubeBuddy%20for%20YouTube%205.8.4%20allows%20authentication%20token%20overwrite%20through%20an%20unauthenticated%20redirect%20URL%20handlernvd
- vuldb.com/cve/CVE-2026-82813nvd
- vuldb.com/submit/875303nvd
- vuldb.com/vuln/397231nvd
- vuldb.com/vuln/397231/ctinvd
News mentions
0No linked articles in our index yet.