CVE-2026-54506 | givanz Vvveb up to 1.0.8.4 User Profile profile.php sanitizeHTML user[bio] cross site scripting
A vulnerability has been found in givanz Vvveb up to 1.0.8.4 and classified as problematic. Affected is the function sanitizeHTML of the file app/controller/user/profile.php of the component User Profile. This manipulation of the argument user[bio] causes cross site scripting.
This vulnerability appears as CVE-2026-54506. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.VulDB Recent EntriesRead More