A vulnerability described as problematic has been identified in WWBN AVideo up to 26.0 . The impacted element is an unknown function of the component Session Cookie Handler . Such manipulation leads to cross site scripting. This vulnerability is documented as CVE-2026-56347 . The attack can be executed remotely. There is not any exploit available.