VYPR
Medium severity6.1NVD Advisory· Published Nov 22, 2022· Updated Jun 17, 2026

CVE-2022-43708

CVE-2022-43708

Description

MyBB 1.8.31 has a (issue 2 of 2) cross-site scripting (XSS) vulnerabilities in the post Attachments interface allow attackers to inject HTML by persuading the user to upload a file with specially crafted name

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • MyBB/Mybb3 versions
    cpe:2.3:a:mybb:mybb:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:mybb:mybb:*:*:*:*:*:*:*:*range: <1.8.32
    • (no CPE)
    • (no CPE)range: <=1.8.31

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.