The Export User plugin through 2.0 for MyBB allows XSS during the process of an admin generating DSGVO data for a user, via the Custom User Title, Location, or Bio field. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 25 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T12:23:30.574Z
Reserved: 2023-03-06T00:00:00.000Z
Link: CVE-2023-27890
Updated: 2024-08-02T12:23:30.574Z
Status : Modified
Published: 2023-04-14T01:15:07.127
Modified: 2024-11-21T07:53:38.437
Link: CVE-2023-27890
No data.
OpenCVE Enrichment
No data.
Weaknesses