vendor:
My Arcade Plugin
by:
0xB9
5.5
CVSS
MEDIUM
Persistent XSS
79
CWE
Product Name: My Arcade Plugin
Affected Version From: 1.3
Affected Version To: 1.3.2001
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested: Ubuntu 17.10
2018
MyBB My Arcade Plugin v1.3 – Persistent XSS
The comment box in the My Arcade plugin is vulnerable to a persistent XSS attack.
Mitigation:
Update to version 1.3.1