Avideo WebRTC plugin: missing auth on status.json.php leaks file paths and port scan results
Security Advisory
GHSA-6p94-r847-w59x
Medium
Avideo
Affected:
- Avideo (commit c3edac274c389916434cacad4ec07ea78ea1338c1 and earlier, when WebRTC plugin is present)
Referenced CVEs:
CVE-2026-89248 · 5.3
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.