CVE-2026-86186: WWBN AVideo: AVideo API fails to enforce rate limits when clients send a bot User-Agent header, allowing attackers to bypass all… | Rapid7 Vulnerability Database