CVE-2026-54506 | givanz Vvveb up to 1.0.8.4 User Profile profile.php sanitizeHTML user[bio] cross site scripting

SecurityVulns

A vulnerability has been found in givanz Vvveb up to 1.0.8.4 and classified as problematic. Affected is the function sanitizeHTML of the file app/controller/user/profile.php of the component User Profile. This manipulation of the argument user[bio] causes cross site scripting.

This vulnerability appears as CVE-2026-54506. The attack may be initiated remotely. There is no available exploit.

The affected component should be upgraded.VulDB Recent EntriesRead More