Medium severity5.4NVD Advisory· Published Feb 22, 2021· Updated Jun 17, 2026
CVE-2021-27279
CVE-2021-27279
Description
MyBB before 1.8.25 allows stored XSS via nested [email] tags with MyCode (aka BBCode).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- MyBB/MyBBdescription
Patches
Vulnerability mechanics
References
3- github.com/mybb/mybb/commit/cb781b49116bf5c4d8deca3e17498122b701677anvdPatchThird Party Advisory
- github.com/mybb/mybb/security/advisories/GHSA-6483-hcpp-p75wnvdExploitThird Party Advisory
- mybb.com/versions/1.8.25/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.