CVE-2017-1000224: Embedplus YouTube

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

CSRF in YouTube (WordPress plugin) could allow unauthenticated attacker to change any setting within the plugin

Affected products

  • Embedplus YouTube: up to and including 11.8.1

Published 2017-11-17. Last modified 2026-06-17.