Security Advisory
CVE-2021-41866
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
MyBB before 1.8.28 allows stored XSS because the displayed Template Name value in the Admin CP's theme management is not escaped properly.