Description
Cross-site scripting (XSS) vulnerability in MyBB before 1.6.5 allows remote attackers to inject arbitrary web script or HTML via vectors related to "usernames via AJAX."
Remediation
References
Related Vulnerabilities
WordPress Plugin Event List PHP Object Injection (0.7.10)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-2854)
WordPress Plugin WooCommerce SQL Injection (5.5.0)
WordPress Plugin Stetic Cross-Site Request Forgery (1.0.6)
WordPress Plugin Jetpack-WP Security, Backup, Speed, & Growth Multiple Vulnerabilities (4.0.3)