OS injection vulnerability in World Wide Broadcast Network AVideo version before 12.4, allows attackers to execute arbitrary code via the video link field to the Embed a video link feature.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| wwbn/avideo(Packagist) | 0 | 12.4 | N/A |
CVSS Metrics