Cross-site scripting vulnerability in Profile setting function of VK All in One Expansion Unit 9.88.1.0 and earlier allows a remote authenticated attacker to inject an arbitrary script.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-27926.json"