Vanilla Forums Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-8825)
Description
index.php?p=/dashboard/settings/branding in Vanilla 2.6.3 allows stored XSS.
index.php?p=/dashboard/settings/branding in Vanilla 2.6.3 allows stored XSS.