CVE-2026-89253 | WWBN AVideo CustomizeUser objects/user.php User::setDonationLink donationLink cross site scripting
A vulnerability marked as problematic has been reported in WWBN AVideo. Affected by this vulnerability is the function User::setDonationLink of the file objects/user.php of the component CustomizeUser. The manipulation of the argument donationLink leads to cross site scripting.
This vulnerability is listed as CVE-2026-89253. The attack may be initiated remotely. There is no available exploit.
Applying a patch is the recommended action to fix this issue.VulDB Recent EntriesRead More