Description
Cross-site scripting (XSS) vulnerability in the Users module in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 might allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Remediation
References
Related Vulnerabilities
WordPress Deserialization of Untrusted Data Vulnerability (CVE-2018-19296)
WordPress Plugin WooCommerce Object Injection (2.3.10)
Adminer 4.6.2 file disclosure vulnerability
WordPress Plugin WP Database Backup Cross-Site Scripting (5.1.1)
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-38843)