CVE-2026-90543 | WWBN AVideo Live plugin socketMessageLiveOwner.json.php sendSocketSuccessMessageToUsers_id key/msg missing authentication

SecurityVulns

A vulnerability was found in WWBN AVideo. It has been declared as critical. This affects the function sendSocketSuccessMessageToUsers_id of the file plugin/Live/socketMessageLiveOwner.json.php of the component Live plugin. Such manipulation of the argument key/msg leads to missing authentication.

This vulnerability is documented as CVE-2026-90543. The attack can be executed remotely. There is not any exploit available.

Applying a patch is advised to resolve this issue.VulDB Recent EntriesRead More