← Back to CVE List

CVE-2018-10580

Published: 2018-05-11T14:29Z
Last Modified: 2024-11-21T03:41Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The "Latest Posts on Profile" plugin 1.1 for MyBB has XSS because there is an added section in a user profile that displays that user's most recent posts without sanitizing the tsubject (aka thread subject) field. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt