{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreiefrzf3qcuzzm7llacsxnii4v3muipcosby6akht426ccnvgsp7te",
"uri": "at://did:plc:6wtxqaikjf62unmnajbfbq5v/app.bsky.feed.post/3mgl6x53kuav2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreieelasqjown6jhainzixdd7olnduffy5q5blbviqmkdxremdxwfd4"
},
"mimeType": "image/jpeg",
"size": 42006
},
"path": "/critical-avideo-flaw-lets-attackers-run-commands-remotely-and-potentially-hijack-streams/",
"publishedAt": "2026-03-08T09:15:09.000Z",
"site": "https://vpncentral.com",
"tags": [
"News",
"Critical AVideo flaw lets attackers run commands remotely and potentially hijack streams",
"VPN Central"
],
"textContent": "A critical vulnerability in the open-source AVideo platform could let unauthenticated attackers execute arbitrary operating system commands on a server through a crafted request. The issue is tracked as CVE-2026-29058, carries a CVSS 3.1 score of 9.8, affects AVideo versions before 7.0, and is patched in version 7.0. The bug sits in objects/getImage.php and involves […]\n\nThe post Critical AVideo flaw lets attackers run commands remotely and potentially hijack streams appeared first on VPN Central.",
"title": "Critical AVideo flaw lets attackers run commands remotely and potentially hijack streams"
}