6.1
CVSSv3

CVE-2022-28354

Published: 24/04/2023 Updated: 03/05/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

In the Active Threads Plugin 1.3.0 for MyBB, the activethreads.php date parameter is vulnerable to XSS when setting a time period.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mybb active threads 1.3.0

Exploits

MyBB Active Threads plugin version 130 suffers from a cross site scripting vulnerability ...