Medium severity6.1NVD Advisory· Published Mar 15, 2021· Updated Jun 17, 2026
CVE-2021-27889
CVE-2021-27889
Description
Cross-site Scripting (XSS) vulnerability in MyBB before 1.8.26 via Nested Auto URL when parsing messages.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- MyBB/MyBBdescription
Patches
Vulnerability mechanics
References
3- github.com/mybb/mybb/security/advisories/GHSA-xhj7-3349-mqcmnvdPatchThird Party Advisory
- packetstormsecurity.com/files/161908/MyBB-1.8.25-Remote-Command-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- blog.sonarsource.com/mybb-remote-code-execution-chainnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.