CVE-2021-28968
22.03.2021, 16:15
An issue was discovered in PunBB before 1.4.6. An XSS vulnerability in the [email] BBcode tag allows (with authentication) injecting arbitrary JavaScript into any forum message.
| Vendor | Product | Version |
|---|---|---|
| gnu | punbb | 𝑥 < 1.4.6 |
𝑥
= Vulnerable software versions