Description MyBB 1.8.19 has XSS in the resetpassword function. Remediation References CVE-2019-3578 Related Vulnerabilities WordPress Plugin Wise Chat Open Redirect (2.6.3) WordPress Plugin Disc Golf Manager PHP Object Injection (1.0.0) Drupal Core 8.x.x Information Disclosure (8.0.0 - 8.7.14) RubyGems Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') Vulnerability (CVE-2019-8321) WordPress Plugin Relevanssi-A Better Search Cross-Site Scripting (4.0.4) Severity Medium Classification CVE-2019-3578 CWE-707 Tags Missing Update Known Vulnerabilities