Infoflowcloud@infoflowcloudDisclosure
The tweet announces a SQL injection vulnerability (CVE-2026-34374) in AVideo up to version 26.0, describing how user input is interpolated into a SQL query.
CVE@CVEnewGeneral
CVE-2026-34374 is a SQL injection flaw in WWBN AVideo's Live_schedule::keyExists() method affecting versions up to 26.0, with no disclosed PoC, exploit, patch, or active exploitation details yet.
The Hacker Wire@TheHackerWireDisclosure
The post announces CVE-2026-34374, a critical SQL injection flaw in WWBN AVideo’s Live_schedule::keyExists() method, indicating the vulnerability’s presence but not evidence of exploitation or a patch.
The Hacker Wire@TheHackerWireDisclosure
A critical SQL injection issue was disclosed in WWBN AVideo up to v26.0 where the Live_schedule::keyExists() method directly interpolates a stream key into a query. No PoC, exploit, patch, or active exploitation evidence was provided.
CVEFind.com@CveFindComDisclosure
The post discloses CVE-2026-34374 as a critical SQL injection flaw in WWBN AVid up to version 26.0, detailing the lack of parameterized queries but providing no PoC, exploit, or patch information.
0day Signal@0dayPublishingDisclosure
The post announces CVE‑2026‑34374 as an SQL injection flaw in AVideo’s RTMP auth fallback, potentially allowing attackers to dump the user database, but offers no PoC, exploit, or patch information.