CVE-2025-34441

Published
View on NVD ↗
CVSS v3
7.5
HIGH
CVSS v2
N/A
Affected
1
PROJECT

Description

AVideo versions prior to 20.1 expose sensitive user information through an unauthenticated public API endpoint. Responses include emails, usernames, administrative status, and last login times, enabling user enumeration and privacy violations.

Create Your Own Broadcast Network With AVideo Platform Open-Source. OAVP OVP
GitHubGitHub
2.1K