Vulnerabilities
Vulnerable Software
Nodebb:  >> Nodebb  >> 3.11.0  Security Vulnerabilities
Cross-Site Scripting (XSS) vulnerability in NodeBB v4.0.4 and before allows remote attackers to store arbitrary code and potentially render the blacklist IP functionality unusable until content is removed via the database.
CVSS Score
6.1
EPSS Score
0.001
Published
2025-04-18
Cross-Site Scripting (XSS) vulnerability in NodeBB v4.0.4 and before allows remote attackers to store arbitrary code in the admin API Access token generator.
CVSS Score
6.1
EPSS Score
0.001
Published
2025-04-18
A persistent cross-site scripting (XSS) vulnerability in NodeBB v3.11.0 allows remote attackers to store arbitrary code in the 'about me' section of their profile.
CVSS Score
4.6
EPSS Score
0.001
Published
2025-01-24


Contact Us

Shodan ® - All rights reserved