CVE-2026-35180 | WWBN AVideo up to 26.0 Site Customization Endpoint customize_settings_nativeUpdate.json.php cross-site request forgery (EUVD-2026-19454)
A vulnerability, which was classified as problematic, has been found in WWBN AVideo up to 26.0. This affects an unknown part of the file admin/customize_settings_nativeUpdate.json.php of the component Site Customization Endpoint. The manipulation leads to cross-site request forgery.
This vulnerability is listed as CVE-2026-35180. The attack may be initiated remotely. There is no available exploit.