A vulnerability, which was classified as problematic, has been found in Adblock for Youtube Extension up to 7.2.1 on Chrome. The impacted element is the function
updateDynamicRules of the file contentscript.js of the component Event Listener. This manipulation of the argument yt-anti-adblock-detected causes improper authorization.
The identification of this vulnerability is CVE-2026-19986. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.