CVE-2026-89253 | WWBN AVideo CustomizeUser objects/user.php User::setDonationLink donationLink cross site scripting

SecurityVulns

A vulnerability marked as problematic has been reported in WWBN AVideo. Affected by this vulnerability is the function User::setDonationLink of the file objects/user.php of the component CustomizeUser. The manipulation of the argument donationLink leads to cross site scripting.

This vulnerability is listed as CVE-2026-89253. The attack may be initiated remotely. There is no available exploit.

Applying a patch is the recommended action to fix this issue.VulDB Recent EntriesRead More