A vulnerability has been found in Google html-template up to 1.25.12/1.26.5 and classified as problematic . This vulnerability affects unknown code. Performing a manipulation results in cross site scripting. This vulnerability is identified as CVE-2026-56858 . The attack can be initiated remotely. There is not any exploit available. The affected component should be upgraded.