Vulnerabilities
Vulnerable Software
Xenforo:  >> Xenforo  >> 2.3.9  Security Vulnerabilities
XenForo before 2.3.10 and before 2.2.19 is vulnerable to stored cross-site scripting (XSS) in structured text mentions, primarily affecting legacy profile post content. An attacker can inject malicious scripts through crafted mentions that are stored and executed when other users view the content.
CVSS Score
5.1
EPSS Score
0.0
Published
2026-04-01


Contact Us

Shodan ® - All rights reserved