CVE-2025-34439 - AVideo < 20.0 Open Redirect via cancelUri Parameter

CVE-2025-34439 - AVideo < 20.0 Open Redirect via cancelUri Parameter

CVE ID : CVE-2025-34439 Published : Dec. 17, 2025, 8:15 p.m. | 37 minutes ago Description : AVideo versions prior to 20.0 are vulnerable to an open redirect flaw due to missing validation of the cancelUri parameter during user login. An attacker can craft a link to redirect users to arbitrary external sites, enabling phishing attacks. Severity: 4.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Dec. 17, 2025

Source: Telegram CVE Monitor