CVE-2026-83595: Avideo Csrf Bypass Same Domain Checkcve-2026-83595-avideo-csrf-bypass-same-domain-check
State-changing API action is executed while same-domain checks are explicitly bypassed without validating the HTTP request method or request origin, leading to CSRF.