Medium severity6.1NVD Advisory· Published Mar 17, 2017· Updated May 13, 2026
CVE-2017-6958
CVE-2017-6958
Description
An XSS vulnerability in the MantisBT Source Integration Plugin (before 2.0.2) search result page allows an attacker to inject arbitrary HTML or JavaScript (if MantisBT's CSP settings permit it) by crafting any valid parameter.
Affected products
1- cpe:2.3:a:mantisbt:source_integration:*:*:*:*:*:mantisbt:*:*Range: <=2.0.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/mantisbt-plugins/source-integration/issues/205nvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.