HIGHNuGet

YoutubeDLSharp allows command injection on windows system due to non sanitized arguments

YoutubeDLSharp allows command injection on windows system due to non sanitized arguments

CVE-2025-43858Published 1 year agoUpdated 5 days agoSource: OSV

Affected packages

  • YoutubeDLSharp1.0.0-beta4 → 1.1.2

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.