Flatboard 3.2 contains a stored cross-site scripting vulnerability that allows authenticated administrators to inject malicious scripts in forum information fields. Attackers can insert JavaScript payloads that execute when other users view the forum, potentially stealing session cookies and executing client-side scripts.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 12 Dec 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Flatboard
Flatboard flatboard |
|
| Vendors & Products |
Flatboard
Flatboard flatboard |
Thu, 11 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Flatboard 3.2 contains a stored cross-site scripting vulnerability that allows authenticated administrators to inject malicious scripts in forum information fields. Attackers can insert JavaScript payloads that execute when other users view the forum, potentially stealing session cookies and executing client-side scripts. | |
| Title | Flatboard 3.2 Authenticated Stored Cross-Site Scripting via Forum Information Field | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-11T21:35:12.229Z
Reserved: 2025-12-10T23:46:14.009Z
Link: CVE-2024-58291
No data.
Status : Awaiting Analysis
Published: 2025-12-11T22:15:49.947
Modified: 2025-12-12T15:17:31.973
Link: CVE-2024-58291
No data.
OpenCVE Enrichment
Updated: 2025-12-12T08:49:35Z
Weaknesses