Search Results (1 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-75928 1 Brushfire 1 Online Experience 2026-08-21 5.3 Medium
The Brushfire platform's video content streaming application (https://online.brushfire.com) exposes database path in requests to users, allowing a remote, unauthenticated attacker to read information about other users. Fixed February 2026.