Description
Controllers.outgoing in controllers/index.js in NodeBB before 0.7.3 has outgoing XSS.
Remediation
References
https://github.com/NodeBB/NodeBB/compare/56b79a9...4de7529
https://github.com/NodeBB/NodeBB/pull/3371
https://vulners.com/securityvulns/SECURITYVULNS:DOC:32625
https://www.vulnerability-lab.com/get_content.php?id=1608
Related Vulnerabilities
CVE-2016-15026 Vulnerability in maven package com.googlecode.plist:dd-plist
CVE-2020-2221 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2017-5929 Vulnerability in maven package ch.qos.logback:logback-access
CVE-2020-15232 Vulnerability in maven package org.mapfish.print:print-lib
CVE-2022-23974 Vulnerability in maven package org.apache.pinot:pinot-server