A vulnerability has been found in Google html-template up to 1.25.12/1.26.5 and classified as problematic. This vulnerability affects unknown code. Performing a manipulation results in cross site scripting.

This vulnerability is identified as CVE-2026-56858. The attack can be initiated remotely. There is not any exploit available.

The affected component should be upgraded.