It was found in vanilla forums prior to 2.0.10 a cross-site scripting vulnerability where a filename could contain arbitrary code to execute on the client side.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
vanillaforums vanilla forums |