XSS Vulnerability in MyBB's Visual MyCode Editor
CVE-2022-43707
6.1MEDIUM
What is CVE-2022-43707?
MyBB version 1.8.31 is susceptible to a Cross-site Scripting (XSS) vulnerability found in its visual MyCode editor (SCEditor). This flaw allows remote attackers to exploit the system by injecting malicious HTML through user input or stored data. If successfully executed, this vulnerability could compromise the security of users by manipulating the rendering of content and potentially executing harmful scripts.