8.6

CVSS3.1

CVE-2026-33480 - AVideo has a SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses in Unauthenticated LiveLinks Pro…

WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `isSSRFSafeURL()` function in AVideo can be bypassed using IPv4-mapped IPv6 addresses (`::ffff:x.x.x.x`). The unauthenticated `plugin/LiveLinks/proxy.php` endpoint uses this function to validate URLs before fetc…

📅 Published: March 23, 2026, 2:08 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.

8.8

CVSS3.1

CVE-2026-33479 - AVideo has PHP Code Injection via eval() in Gallery saveSort.json.php Exploitable Through CSRF Agai…

WWBN AVideo is an open source video platform. In versions up to and including 26.0, the Gallery plugin's `saveSort.json.php` endpoint passes unsanitized user input from `$_REQUEST['sections']` array values directly into PHP's `eval()` function. While the endpoint is gated behind `User::isAdmin()`, …

📅 Published: March 23, 2026, 2:05 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.

10

CVSS3.1

CVE-2026-33478 - AVideo Multi-Chain Attack: Unauthenticated Remote Code Execution via Clone Key Disclosure, Database…

WWBN AVideo is an open source video platform. In versions up to and including 26.0, multiple vulnerabilities in AVideo's CloneSite plugin chain together to allow a completely unauthenticated attacker to achieve remote code execution. The `clones.json.php` endpoint exposes clone secret keys without …

📅 Published: March 23, 2026, 2:01 p.m. 🔄 Last Modified: April 22, 2026, 3:45 a.m.

7.6

CVSS3.1

CVE-2026-33354 - AVideo has an authenticated arbitrary local file read via `chunkFile` path injection in `aVideoEnco…

WWBN AVideo is an open source video platform. In versions up to and including 26.0, `POST /objects/aVideoEncoder.json.php` accepts a requester-controlled `chunkFile` parameter intended for staged upload chunks. Instead of restricting that path to trusted server-generated chunk locations, the endpoi…

📅 Published: March 23, 2026, 1:58 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.

9.8

CVSS3.1

CVE-2026-33352 - AVideo has an Unauthenticated SQL Injection via `doNotShowCats` Parameter (Backslash Escape Bypass)

WWBN AVideo is an open source video platform. Prior to version 26.0, an unauthenticated SQL injection vulnerability exists in `objects/category.php` in the `getAllCategories()` method. The `doNotShowCats` request parameter is sanitized only by stripping single-quote characters (`str_replace("'", ''…

📅 Published: March 23, 2026, 1:53 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.

6.1

CVSS3.1

CVE-2026-3635 - Fastify request.protocol and request.host spoofable via X-Forwarded-Proto/Host from untrusted conne…

Summary When trustProxy is configured with a restrictive trust function (e.g., a specific IP like trustProxy: '10.0.0.1', a subnet, a hop count, or a custom function), the request.protocol and request.host getters read X-Forwarded-Proto and X-Forwarded-Host headers from any connection — including c…

📅 Published: March 23, 2026, 1:53 p.m. 🔄 Last Modified: April 16, 2026, 5:46 p.m.

9.1

CVSS3.1

CVE-2026-33351 - AVideo has Unauthenticated SSRF via `webSiteRootURL` Parameter in saveDVR.json.php, Chaining to Ver…

WWBN AVideo is an open source video platform. Prior to version 26.0, a Server-Side Request Forgery (SSRF) vulnerability exists in `plugin/Live/standAloneFiles/saveDVR.json.php`. When the AVideo Live plugin is deployed in standalone mode (the intended configuration for this file), the `$_REQUEST['we…

📅 Published: March 23, 2026, 1:51 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.

6.9

CVSS4.0

CVE-2019-25625 - Blob Studio 2.17 Denial of Service via Malformed Input

Blob Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the key entry mechanism. Attackers can create a text file with a large buffer of repeated characters and trigger the application to read it, causing …

📅 Published: March 23, 2026, 1:48 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.

6.9

CVSS4.0

CVE-2019-25624 - Liquid Studio 2.17 Denial of Service via Malformed Input

Liquid Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attackers can trigger the vulnerability by entering arbitrary characters during application runtime, causing the applicatio…

📅 Published: March 23, 2026, 1:48 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.

6.9

CVSS4.0

CVE-2019-25623 - Luminance Studio 2.17 Denial of Service via Malformed Input

Luminance Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attackers can create a text file with arbitrary character sequences and trigger the application to process the input, ca…

📅 Published: March 23, 2026, 1:48 p.m. 🔄 Last Modified: March 25, 2026, 9:28 p.m.
Total resulsts: 349182
Page 971 of 34,919
« previous page » next page
Filters