CVE-2025-34442

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
17/12/2025
Last modified:
17/12/2025

Description

AVideo versions prior to 20.0 disclose absolute filesystem paths via multiple public API endpoints. Returned metadata includes full server paths to media files, revealing underlying filesystem structure and facilitating more effective attack chains.