MyBB Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-27279)
Description
MyBB before 1.8.25 allows stored XSS via nested [email] tags with MyCode (aka BBCode).
MyBB before 1.8.25 allows stored XSS via nested [email] tags with MyCode (aka BBCode).