A vulnerability described as problematic has been identified in rolandd RO CSVI Extension up to 9.11.0. Impacted is an unknown function of the component AJAX Endpoint. Such manipulation leads to cross-site request forgery.

This vulnerability is listed as CVE-2026-65944. The attack may be performed from remote. There is no available exploit.