A vulnerability labeled as problematic has been found in DumbWareio DumbAssets up to 1.0.11. The impacted element is an unknown function of the component Asset API Endpoint. Such manipulation leads to cross site scripting.

This vulnerability is traded as CVE-2026-45231. The attack may be launched remotely. There is no exploit available.

A patch should be applied to remediate this issue.