DailyCVE@dailycveDisclosure
The post announces a critical command injection vulnerability in AVideo (CVE‑2026‑33502) and points to a dailyCVE article for further details.
CVEFind.com@CveFindComDisclosure
The announcement highlights a critical unauthenticated SSRF flaw in AVideo's `plugin/Live/test.php` (vulnerable up to 26.0) but does not provide any PoC, exploit code, patch, or evidence of active exploitation.
The Hacker Wire@TheHackerWireDisclosure
CVE‑2026‑33502 is an unauthenticated SSRF vulnerability in WWBN AVideo's plugin/Live/test.php, flagged as critical; no PoC, exploit, or mitigation details are provided.
0day Signal@0dayPublishingDisclosure
The tweet announces a new unauthenticated SSRF vulnerability (CVE-2026-33502) in AVideo, linking to a vulnerability page that likely contains technical details.
PulsePatch.io@pulsepatchioDisclosure
CVE-2026-33502 is an unauthenticated SSRF flaw in AVideo that could enable internal network access, but no PoC, exploit code, patch information, or evidence of active exploitation is provided.