PT-2026-3960 · Lambertgroup · Lambertgroup Html5 Video Player With Playlist & Multiple Skins

CVE-2025-32123

·

Published

2026-01-22

·

Updated

2026-01-25

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions LambertGroup HTML5 Video Player with Playlist & Multiple Skins versions through 5.3.5
Description The software contains a flaw related to improper input handling during web page generation, leading to a Reflected Cross-site Scripting (XSS) condition. This allows for the injection of malicious scripts into web pages. The vulnerability exists in the HTML5 Video Player with Playlist & Multiple Skins. The issue allows attackers to inject scripts via the application.
Recommendations Versions prior to 5.3.5 should be updated.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-32123

Affected Products

Lambertgroup Html5 Video Player With Playlist & Multiple Skins