CVE-2026-19986 | Adblock for Youtube Extension up to 7.2.1 on Chrome Event Listener contentscript.js updateDynamicRules yt-anti-adblock-detected improper authorization
A vulnerability, which was classified as problematic, has been found in Adblock for Youtube Extension up to 7.2.1 on Chrome. The impacted element is the function updateDynamicRules of the file contentscript.js of the component Event Listener. This manipulation of the argument yt-anti-adblock-detected causes improper authorization.
The identification of this vulnerability is CVE-2026-19986. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More