2025.12.13.232949.dev0
4 years ago
15 hours ago
Known vulnerabilities in the yt-dlp package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
yt-dlp is an A youtube-dl fork with additional features and patches Affected versions of this package are vulnerable to Command Injection via the function Note:
Users should always be careful when using How to fix Command Injection? Upgrade | [,2025.7.21) |
yt-dlp is an A youtube-dl fork with additional features and patches Affected versions of this package are vulnerable to Directory Traversal in the Note: This vulnerability is only exploitable on Windows. How to fix Directory Traversal? Upgrade | [,2024.7.1) |
yt-dlp is an A youtube-dl fork with additional features and patches Affected versions of this package are vulnerable to OS Command Injection due to insufficient escaping of double quotes in the How to fix OS Command Injection? Upgrade | [2021.4.11,2024.4.9) |