Threats Tagged 'cve-2026-59808'
View all threats tagged with 'cve-2026-59808'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-59808'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-59808: Missing Authentication for Critical Function in WWBN AVideoCVE-2026-59808 0 AVideo through commit 9c39d8c8 contains an authentication bypass vulnerability where deduplicateByEncoderQueueId() returns video_id_hash credentials for any video by encoder_queue_id without ownership verification, and useVideoHashOrLogin() converts this hash into passwordless login as the video owner. Attackers with upload permission can retrieve an administrator's video_id_hash by omitting the videos_id parameter, then use that hash in an unauthenticated request to gain administrative session access and modify system configuration. Join the discussion | CVE Database V5 | 08/22/2026, 15:31:02 UTC Added: 08/22/2026, 12:52:40 UTC |
Showing 1 to 1 of 1 result