Medium severity6.1GHSA Advisory· Published Apr 30, 2019· Updated Jun 17, 2026
CVE-2015-9286
CVE-2015-9286
Description
Controllers.outgoing in controllers/index.js in NodeBB before 0.7.3 has outgoing XSS.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
nodebbnpm | < 0.8.2 | 0.8.2 |
Affected products
3Patches
Vulnerability mechanics
References
6- github.com/NodeBB/NodeBB/pull/3371nvdPatchThird Party AdvisoryWEB
- vulners.com/securityvulns/SECURITYVULNS:DOC:32625nvdExploitThird Party AdvisoryWEB
- www.vulnerability-lab.com/get_content.phpnvdExploitThird Party AdvisoryWEB
- github.com/NodeBB/NodeBB/compare/56b79a9...4de7529nvdRelease NotesThird Party AdvisoryWEB
- github.com/advisories/GHSA-72fv-qgj6-2w2pghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2015-9286ghsaADVISORY
News mentions
0No linked articles in our index yet.