Description
MyBB 1.8.31 has a (issue 2 of 2) cross-site scripting (XSS) vulnerabilities in the post Attachments interface allow attackers to inject HTML by persuading the user to upload a file with specially crafted name
Remediation
References
Related Vulnerabilities
WordPress Plugin ActiveCampaign-Forms, Site Tracking, Live Chat Cross-Site Request Forgery (8.0.1)
Drupal Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2009-2372)
Magento Improper Input Validation Vulnerability (CVE-2019-7899)
WordPress Plugin WordPress Download Manager Cross-Site Scripting (2.5.8)