CVE-2026-19913 | Kaltura HTML5 Video Player up to 2.103 html5lib mwEmbedLoader.php ServiceUrl input validation
A vulnerability, which was classified as problematic, was found in Kaltura HTML5 Video Player up to 2.103. The impacted element is an unknown function of the file mwEmbedLoader.php of the component html5lib. Such manipulation of the argument ServiceUrl leads to improper input validation.
This vulnerability is listed as CVE-2026-19913. The attack may be performed from remote. There is no available exploit.