Cross-site scripting (XSS) vulnerability in the Admin control panel in MyBB (aka MyBulletinBoard) prior to 1.8.7 and MyBB Merge System prior to 1.8.7 might allow remote malicious users to inject arbitrary web script or HTML via vectors involving pruning logs.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mybb mybb |
||
mybb merge system |