
🚨*CVE* CVE-2026-35181 WWBN AVideo is an open source video platform. In versions 26.0 and prior, the player skin configuration endpoint at admin/playerUpdate.json.php does not validate CSRF… https://www.cve.org/CVERecord?id=CVE-2026-35181 ----- Traducción: CVE-2026-35181 WWB… http://infoflow.cloud`
Post summary
The post announces CVE-2026-35181 targeting WWBN AVideo, highlighting a CSRF validation flaw in the playerUpdate.json.php endpoint, without any proof‑of‑concept, exploitation, or patch information.

