0day Signal@0dayPublishingDisclosure
The tweet discloses a new unauthenticated SQL injection (CVE-2026-33352) in AVideo, detailing how backslash escapes bypass sanitization. No exploitation activity or patch information is provided.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces a SQL Injection flaw in WWBN AVideo before version 26.0, triggered via an unauthenticated category parameter, without providing PoC, exploit code, or remediation details.
CVEFind.com@CveFindComPatch
A critical SQL injection was identified in pre‑26.0 versions of WWBN AVideo and was fixed in version 26.0; no PoC, exploit tool, or evidence of active exploitation is mentioned.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces a critical SQL injection vulnerability in WWBN AVideo prior to version 26.0, providing the vulnerability type but no evidence of exploitation or mitigation.
PulsePatch.io@pulsepatchioDisclosure
The post announces CVE‑2026‑33352 as an unauthenticated SQL injection affecting AVideo, warns of potential RCE, and stresses the importance of applying the vendor patch.
Vulert@vulert_officialDisclosure
The tweet announces a critical SQL injection vulnerability (CVE-2026-33352) in AVideo, linking to a source for more details but offering no exploit code or patch information.