Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.6 HIGH
CVE-2026-33354 — AVideo has an authenticated arbitrary local file read via `chunkFile` path injection in `…

WWBN AVideo is an open source video platform. In versions up to and including 26.0, `POST /objects/aVideoEncoder.json.php` accepts a requester-controlled `chunkFile` parameter intended for staged upl…

avideo | Remote | Path Traversal
Mar 23, 2026 Mar 24, 2026
Mar 23, 2026
Mar 24, 2026
Showing 20 of 6341 Results