CVE-2026-89254 | WWBN AVideo CustomizeUser add.json.php typeToHTML field_name cross site scripting
A vulnerability described as problematic has been identified in WWBN AVideo. Affected by this issue is the function typeToHTML of the file add.json.php of the component CustomizeUser. The manipulation of the argument field_name results in cross site scripting.
This vulnerability is cataloged as CVE-2026-89254. The attack may be launched remotely. There is no exploit available.
It is best practice to apply a patch to resolve this issue.VulDB Recent EntriesRead More