PT-2026-3960 · Lambertgroup · Lambertgroup Html5 Video Player With Playlist & Multiple Skins
Published
2026-01-22
·
Updated
2026-01-25
·
CVE-2025-32123
CVSS v3.1
7.1
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
LambertGroup HTML5 Video Player with Playlist & Multiple Skins versions through 5.3.5
Description
The software contains a flaw related to improper input handling during web page generation, leading to a Reflected Cross-site Scripting (XSS) condition. This allows for the injection of malicious scripts into web pages. The vulnerability exists in the HTML5 Video Player with Playlist & Multiple Skins. The issue allows attackers to inject scripts via the application.
Recommendations
Versions prior to 5.3.5 should be updated.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Lambertgroup Html5 Video Player With Playlist & Multiple Skins