A stored cross-site scripting (XSS) vulnerability in Simple Machines Forum v2.1.6 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Forum Name parameter.
References
Configurations
History
No history.
Information
Published : 2025-12-18 20:16
Updated : 2025-12-31 19:58
NVD link : CVE-2025-67163
Mitre link : CVE-2025-67163
CVE.ORG link : CVE-2025-67163
JSON object : View
Products Affected
simplemachines
- simple_machines_forum
