EIP-2026-114551
PRE-CVEYouTube Automated CMS 1.0.7 - Cross-Site Request Forgery / Persistent Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114551. PoCs published by Arbin Godar.
AI-analyzed exploit summary This exploit demonstrates a CSRF attack leading to persistent XSS in YouTube Automated CMS versions 1.0.1 to 1.0.7. The PoC crafts a malicious HTML page that submits a form with an XSS payload in the 'title' field, exploiting lack of input sanitization and CSRF protection.
Description
YouTube Automated CMS 1.0.7 - Cross-Site Request Forgery / Persistent Cross-Site Scripting
Exploits (1)
This exploit demonstrates a CSRF attack leading to persistent XSS in YouTube Automated CMS versions 1.0.1 to 1.0.7. The PoC crafts a malicious HTML page that submits a form with an XSS payload in the 'title' field, exploiting lack of input sanitization and CSRF protection.