All 2 CVE vulnerabilities found in Kyoo, with AI-generated Chinese analysis, references, and POCs.
Vendor: zoriya
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-77386 | Kyoo: OIDC login token can be redirected to an attacker-controlled URL CWE-601 | 6.5 | Medium | 2026-09-18 |
| CVE-2026-77385 | Kyoo: Transcoder serves uncataloged files from the media directory CWE-639 | 4.3 | Medium | 2026-09-18 |
All 2 known CVE vulnerabilities affecting Kyoo with full Chinese analysis, references, and POCs where available.