A vulnerability classified as problematic has been found in Rolandd RO CSVI Extension up to 9.11.0. The affected element is an unknown function of the component AJAX Endpoint Handlers. Performing a manipulation results in cross site scripting.

This vulnerability is cataloged as CVE-2026-65946. It is possible to initiate the attack remotely. There is no exploit available.