← WordPress Vulnerabilities
WordPress security by component

StreamWeasels YouTube Integration

StreamWeasels YouTube Integration is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Jul 29, 2025; the highest CVE/CNA score is 6.4.

Plugin slug: streamweasels-youtube-integration

CVE-2025-7811: StreamWeasels YouTube Integration: Cross-site scripting

StreamWeasels YouTube Integration is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.

PublishedJul 29, 2025
Safe version guidanceSee mitigation notes
Safe version
Jul 29, 2025 CVE-2025-7811
StreamWeasels YouTube Integration: Cross-site scripting
StreamWeasels YouTube Integration is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.4
NVDPending
Nov 28, 2024 CVE-2024-11788
StreamWeasels YouTube Integration: Cross-site scripting
StreamWeasels YouTube Integration is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.4
NVDPending
Oct 29, 2024 CVE-2024-10185
StreamWeasels YouTube Integration: Cross-site scripting
StreamWeasels YouTube Integration is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.4
NVDPending