Fri. 11th November, 2016
It has been discovered that the extension "HTML5 Video Player" (html5videoplayer) is susceptible to Cross-Site Scripting.
This is a companion discussion topic for the original entry at https://typo3.org/article/cross-site-scripting-in-extension-html5-video-player-html5videoplayer/