Description MyBB 1.8.14 has XSS via the Title or Description field on the Edit Forum screen. Remediation References CVE-2018-6844 Related Vulnerabilities PHP Server-Side Request Forgery (SSRF) Vulnerability (CVE-2017-7272) WordPress Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-9064) WordPress Plugin YITH WooCommerce Product Add-Ons Security Bypass (1.5.21) Plone CMS Resource Management Errors Vulnerability (CVE-2012-5499) WordPress Plugin PlanSo Forms Cross-Site Scripting (2.6.3) Severity Medium Classification CVE-2018-6844 CWE-707 CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities