Description MyBB before 1.8.11 allows remote attackers to bypass an SSRF protection mechanism. Remediation References CVE-2017-7566 Related Vulnerabilities IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-6035) Drupal Core 9.0.x Cross-Site Scripting (9.0.0 - 9.0.11) Oracle Application Server Other Vulnerability (CVE-2004-1365) WordPress Plugin RESPONSIVE 3D SLIDER SQL Injection (1.2) WordPress Plugin NewStatPress Multiple Vulnerabilities (0.9.8) Severity High Classification CVE-2017-7566 CWE-918 CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N Tags Missing Update Known Vulnerabilities