Known Vulnerabilities for products from WWBN

Listed below are 20 of the newest known vulnerabilities associated with the vendor "WWBN".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-47696 json Not Provided 2026-05-29 2026-05-29
CVE-2026-47694 json Not Provided 2026-05-29 2026-05-30
CVE-2026-46337 json WWBN AVideo is an open source video platform. In 29.0 and earlier, an unauthenticated remote attacker can read arbitrary imag... Not Provided 2026-05-29 2026-06-01
CVE-2026-45731 json WWBN AVideo is an open source video platform. In 29.0 and earlier, view/update.php reads $_POST['updateFile'] as a relative p... Not Provided 2026-05-29 2026-06-01
CVE-2026-45620 json WWBN AVideo is an open source video platform. In 29.0 and earlier, objects/mention.json.php has no User::loginCheck() or admi... Not Provided 2026-05-29 2026-06-01
CVE-2026-45619 json Not Provided 2026-05-29 2026-05-29
CVE-2026-45610 json WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a cross-site request forgery vulnerability on the... Not Provided 2026-05-29 2026-06-01
CVE-2026-45580 json WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a stored cross-site scripting vulnerability. The ... Not Provided 2026-05-29 2026-06-01
CVE-2026-45578 json WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a classic shell-metacharacter injection. The YPTS... Not Provided 2026-05-29 2026-06-01
CVE-2026-43885 json Not Provided 2026-05-11 2026-05-15
CVE-2026-41304 json WWBN AVideo is an open source video platform. In versions 29.0 and below, the `cloneServer.json.php` endpoint in the CloneSit... Not Provided 2026-04-22 2026-04-24
CVE-2026-41064 json WWBN AVideo is an open source video platform. In versions up to and including 29.0, an incomplete fix for AVideo's `test.php`... Not Provided 2026-04-22 2026-04-24
CVE-2026-41063 json WWBN AVideo is an open source video platform. In versions 29.0 and below, an incomplete XSS fix in AVideo's `ParsedownSafeWit... Not Provided 2026-04-21 2026-04-24
CVE-2026-41062 json WWBN AVideo is an open source video platform. In versions 29.0 and below, the directory traversal fix introduced in commit 23... Not Provided 2026-04-21 2026-04-24
CVE-2026-41061 json WWBN AVideo is an open source video platform. In versions 29.0 and below, the `isValidDuration()` regex at `objects/video.php... Not Provided 2026-04-21 2026-04-24
CVE-2026-41060 json WWBN AVideo is an open source video platform. In versions 29.0 and below, the `isSSRFSafeURL()` function in `objects/function... Not Provided 2026-04-21 2026-04-24
CVE-2026-41058 json WWBN AVideo is an open source video platform. In versions 29.0 and below, the incomplete fix for AVideo's CloneSite `deleteDu... Not Provided 2026-04-21 2026-04-24
CVE-2026-41057 json WWBN AVideo is an open source video platform. In versions 29.0 and below, the CORS origin validation fix in commit `986e64aad... Not Provided 2026-04-21 2026-04-24
CVE-2026-41056 json WWBN AVideo is an open source video platform. In versions 29.0 and below, the `allowOrigin($allowAll=true)` function in `obje... Not Provided 2026-04-21 2026-04-23
CVE-2026-41055 json WWBN AVideo is an open source video platform. In versions 29.0 and below, an incomplete SSRF fix in AVideo's LiveLinks proxy ... Not Provided 2026-04-21 2026-04-23

Known software with vulnerabilities from WWBN

Type Vendor Product Version
ApplicationWwbnAvideo-