CVE & CISA-KEV Catalog

CVE-2026-50023

HIGH
8.3
CVSS v3
NVD

Description

yt-dlp is a command-line audio/video downloader. Prior to 2026.06.09, a vulnerability exists in yt-dlp that allows a remote attacker to write arbitrary OS-shortcut files (such as .desktop, .url, .webloc) to the user's filesystem, bypassing the remediation for CVE-2024-38519. The allowlist explicitly included the unsafe extensions .desktop, .url, and .webloc so that the functionality of the --write-link option (and its variants) could be preserved. These allowlist inclusions can be exploited by an attacker to write malicious OS-shortcut files in the context of a media or subtitles download. This vulnerability is fixed in 2026.06.09.

How to fix

Remediation Available
yt-dlpDebian
Fixed in:2026.06.09-1CVE-2026-50023
yt-dlpWindows application
Affected:2026.06.09Fixed in:2026.06.09yt-dlp

TridentStack Control can deploy fixes like this automatically across your Windows, macOS, and Linux fleet. See how it works

Remediation is compiled from vendor and distribution security advisories. Always confirm against the linked source for your exact version and platform.

CVSS v3 Vector

Exploitability

Attack VectorNetwork
Attack ComplexityHigh
Privileges RequiredNone
User InteractionRequired
ScopeChanged

Impact

ConfidentialityHigh
IntegrityHigh
AvailabilityHigh

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H

Exploit Intelligence

0.56%probability of exploitation in 30 days
43rdpercentile

Moderate risk: more likely to be exploited than 43% of all known CVEs.

References

Related Vulnerabilities

Other CWE-641 vulnerabilities, ordered by exploit likelihood. View all

CVESeverityCVSSEPSSExploitedFix
CVE-2021-41146High8.81.4%-Fix
CVE-2026-25177High8.81.2%-Fix
CVE-2024-30063Medium6.71.0%-Fix
CVE-2023-0046High7.21.0%-Fix
CVE-2022-23536Medium6.50.8%--
CVE-2025-21361High7.80.7%-Fix
Embed a live status badge for CVE-2026-50023
CVE-2026-50023 severity badge

Markdown

[![CVE-2026-50023](https://tridentstack.com/cve/badge/CVE-2026-50023.svg)](https://tridentstack.com/cve/CVE-2026-50023)

HTML

<a href="https://tridentstack.com/cve/CVE-2026-50023"><img src="https://tridentstack.com/cve/badge/CVE-2026-50023.svg" alt="CVE-2026-50023"></a>

Find and fix vulnerabilities across your fleet

TridentStack Control continuously scans your Windows, macOS, and Linux fleet for known vulnerabilities, prioritizes them by severity and active exploitation, and patches them automatically.

See how it worksStart freeThis CVE lookup is free and always will be.

This product uses NVD data but is not endorsed or certified by the NVD. EPSS scores courtesy of FIRST.org (https://www.first.org/epss). Source: CISA KEV Catalog. Data as of 2026-06-26.