Description
In MyBB before 1.8.11, the Email MyCode component allows XSS, as demonstrated by an onmouseover event.
Remediation
References
Related Vulnerabilities
WordPress Plugin Backup Migration Cross-Site Scripting (1.1.5)
WordPress 4.9.x Prototype Pollution (4.9 - 4.9.19)
Drupal Core 6.x Multiple Security Bypass Vulnerabilities (6.0 - 6.4)
WordPress Plugin A/B Test 'action' Parameter Directory Traversal (1.0.6)
WordPress Plugin Booking Calendar Cross-Site Scripting (7.1)