CVE-2025-34439
17.12.2025, 20:15
AVideo versions prior to 20.1 arevulnerable to an open redirect flaw due to missing validation of the cancelUri parameter during user login. An attacker can craft a link to redirect users to arbitrary external sites, enabling phishing attacks.
| Vendor | Product | Version |
|---|---|---|
| wwbn | avideo | 𝑥 < 20.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration