Diamond Member ThaHaka 0 Posted 21 hours ago Diamond Member Share Posted 21 hours ago This is the hidden content, please Sign In or Sign Up The CERT Coordination Center (CERT/CC) has disclosed two unpatched vulnerabilities in Kaltura's HTML5 video player library that allow a remote, unauthenticated attacker to read arbitrary files from a server and execute code on it. The flaws, tracked as CVE-2026-19913 and CVE-2026-19912, both stem from the same unsafe deserialization in the mwEmbedLoader.php endpoint of the mwEmbed player This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/326998-h4ckn3wsunpatched-kaltura-mwembed-flaws-could-let-remote-attackers-read-files-and-run-code/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.