CVE-2026-26234 | Albrecht Jung Smart Visu Server 1.0.830/1.0.832/1.0.905/1.1.1050 Request Header X-Forwarded-Host http headers for scripting syntax (ZSL-2026-5970 / CNNVD-202602-2155)
A vulnerability classified as critical has been found in Albrecht Jung Smart Visu Server 1.0.830/1.0.832/1.0.905/1.1.1050. Affected by this issue is some unknown functionality of the component Request Header Handler. Performing a manipulation of the argument X-Forwarded-Host results in improper neutralization of http headers for scripting syntax.
This vulnerability is reported as CVE-2026-26234. The attack is possible to be carried out remotely. No exploit exists.