<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 21:33:52 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-277986</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-277986</link>
      <description>EUVD-2026-277986</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-277986</guid>
    </item>
    <item>
      <title>fkie_cve-2026-33763</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33763</link>
      <description>&lt;p&gt;WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `get_api_video_password_is_correct` API endpoint allows any unauthenticated user to verify whether a given password is correct for any password-protected video. The endpoint returns a boolean `passwordIsCorrect` field with no rate limiting, CAPTCHA, or authentication requirement, enabling efficient offline-speed brute-force attacks against video passwords. Commit 01a0614fedcdaee47832c0d913a0fb86d8c28135 contains a patch.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `get_api_video_password_is_correct` API endpoint allows any unauthenticated user to verify whether a given password is correct for any password-protected video. The endpoint returns a boolean `passwordIsCorrect` field with no rate limiting, CAPTCHA, or authentication requirement, enabling efficient offline-speed brute-force attacks against video passwords. Commit 01a0614fedcdaee47832c0d913a0fb86d8c28135 contains a patch.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-33763</guid>
    </item>
    <item>
      <title>GHSA-8prq-2jr2-cm92 — AVideo has an Unauthenticated Video Password Brute-Force Vulnerability via Unrate-Limited Boolean Oracle</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8prq-2jr2-cm92</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: wwbn/avideo&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The `get_api_video_password_is_correct` API endpoint allows any unauthenticated user to verify whether a given password is correct for any password-protected video. The endpoint returns a boolean `passwordIsCorrect` field with no rate limiting, CAPTCHA, or authentication requirement, enabling efficient offline-speed brute-force attacks against video passwords.&lt;/p&gt;
&lt;p&gt;## Details&lt;/p&gt;
&lt;p&gt;The vulnerable endpoint is defined at `plugin/API/API.php:1111-1133`:&lt;/p&gt;
&lt;p&gt;```php
public function get_api_video_password_is_correct($parameters)
{
    $obj = new stdClass();
    $obj-&amp;gt;videos_id = intval($parameters[&amp;#39;videos_id&amp;#39;]);
    $obj-&amp;gt;passwordIsCorrect = true;
    $error = true;
    $msg = &amp;#39;&amp;#39;;&lt;/p&gt;
&lt;p&gt;if (!empty($obj-&amp;gt;videos_id)) {
        $error = false;
        $video = new Video(&amp;#39;&amp;#39;, &amp;#39;&amp;#39;, $obj-&amp;gt;videos_id);
        $password = $video-&amp;gt;getVideo_password();
        if (!empty($password)) {
            $obj-&amp;gt;passwordIsCorrect = $password == $parameters[&amp;#39;video_password&amp;#39;];
        }
    } else {
        $msg = &amp;#39;Videos id is required&amp;#39;;
    }&lt;/p&gt;
&lt;p&gt;return new ApiObject($msg, $error, $obj);
}
```&lt;/p&gt;
&lt;p&gt;The `get()` dispatcher at `API.php:191-209` routes GET requests directly to this method without any authentication enforcement:&lt;/p&gt;
&lt;p&gt;```php
public function get($parameters) {
    // ... optional user login if credentials provided ...
    $APIName = $parameters[&amp;#39;APIName&amp;#39;];
    if (method_exists($this, &amp;#34;get_api_$APIName&amp;#34;)) {
        $str = &amp;#34;\$object = \$this-&amp;gt;get_api_$APIName(\$parameters);&amp;#34;;
        eval($str);
    }…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: wwbn/avideo&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The `get_api_video_password_is_correct` API endpoint allows any unauthenticated user to verify whether a given password is correct for any password-protected video. The endpoint returns a boolean `passwordIsCorrect` field with no rate limiting, CAPTCHA, or authentication requirement, enabling efficient offline-speed brute-force attacks against video passwords.&lt;/p&gt;
&lt;p&gt;## Details&lt;/p&gt;
&lt;p&gt;The vulnerable endpoint is defined at `plugin/API/API.php:1111-1133`:&lt;/p&gt;
&lt;p&gt;```php
public function get_api_video_password_is_correct($parameters)
{
    $obj = new stdClass();
    $obj-&amp;gt;videos_id = intval($parameters[&amp;#39;videos_id&amp;#39;]);
    $obj-&amp;gt;passwordIsCorrect = true;
    $error = true;
    $msg = &amp;#39;&amp;#39;;&lt;/p&gt;
&lt;p&gt;if (!empty($obj-&amp;gt;videos_id)) {
        $error = false;
        $video = new Video(&amp;#39;&amp;#39;, &amp;#39;&amp;#39;, $obj-&amp;gt;videos_id);
        $password = $video-&amp;gt;getVideo_password();
        if (!empty($password)) {
            $obj-&amp;gt;passwordIsCorrect = $password == $parameters[&amp;#39;video_password&amp;#39;];
        }
    } else {
        $msg = &amp;#39;Videos id is required&amp;#39;;
    }&lt;/p&gt;
&lt;p&gt;return new ApiObject($msg, $error, $obj);
}
```&lt;/p&gt;
&lt;p&gt;The `get()` dispatcher at `API.php:191-209` routes GET requests directly to this method without any authentication enforcement:&lt;/p&gt;
&lt;p&gt;```php
public function get($parameters) {
    // ... optional user login if credentials provided ...
    $APIName = $parameters[&amp;#39;APIName&amp;#39;];
    if (method_exists($this, &amp;#34;get_api_$APIName&amp;#34;)) {
        $str = &amp;#34;\$object = \$this-&amp;gt;get_api_$APIName(\$parameters);&amp;#34;;
        eval($str);
    }…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8prq-2jr2-cm92</guid>
    </item>
  </channel>
</rss>
