Description
Controllers.outgoing in controllers/index.js in NodeBB before 0.7.3 has outgoing XSS.
Remediation
References
https://github.com/NodeBB/NodeBB/compare/56b79a9...4de7529
https://github.com/NodeBB/NodeBB/pull/3371
https://vulners.com/securityvulns/SECURITYVULNS:DOC:32625
https://www.vulnerability-lab.com/get_content.php?id=1608
Related Vulnerabilities
CVE-2021-35513 Vulnerability in npm package mermaid
CVE-2019-10432 Vulnerability in maven package org.jenkins-ci.plugins:htmlpublisher
CVE-2021-3717 Vulnerability in maven package org.wildfly.core:wildfly-core-parent
CVE-2022-23302 Vulnerability in maven package log4j:log4j
CVE-2021-21172 Vulnerability in maven package org.webjars.npm:electron