PKSA-6mc5-gbk2-4jkz Security Advisory
-
[HIGH] AVideo has an authenticated arbitrary local file read via `chunkFile` path injection in `aVideoEncoder.json.php`
PKSA-6mc5-gbk2-4jkz CVE-2026-33354 GHSA-4jw9-5hrc-m4j6
Affected package: wwbn/avideo
Affected version: <=26.0
Reported by:
GitHub