CVE-2025-14906 | WP Youtube Video Gallery Plugin up to 1.0 on WordPress Setting wpYTVideoGallerySettingSave cross-site request forgery (EUVD-2026-4573)
A vulnerability was found in WP Youtube Video Gallery Plugin up to 1.0 on WordPress. It has been classified as problematic. Affected by this issue is the function wpYTVideoGallerySettingSave of the component Setting Handler. This manipulation causes cross-site request forgery.
The identification of this vulnerability is CVE-2025-14906. It is possible to initiate the attack remotely. There is no exploit available.