CVE-2021-38221: XSS
Published Jun 2, 2022
·Updated
bbs-go <= 3.3.0 including Custom Edition is vulnerable to stored XSS.
Affected Software
1 affected component
Bbs-go Project Bbs-go<=3.3.0
Remediation
Patch Available
Event History
Jun 2, 2022
CVE Published
via MITRE·05:27 PM
Data Sourced
via MITRE·05:27 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-38221?
CVE-2021-38221 is classified as a moderate severity vulnerability due to its potential for stored cross-site scripting (XSS) attacks.
2
How do I fix CVE-2021-38221?
To mitigate CVE-2021-38221, upgrade to a version of bbs-go greater than 3.3.0 that addresses the vulnerability.
3
What type of vulnerability is CVE-2021-38221?
CVE-2021-38221 is a stored cross-site scripting (XSS) vulnerability affecting the bbs-go forum software.
4
Which versions of bbs-go are affected by CVE-2021-38221?
CVE-2021-38221 affects all versions of bbs-go up to and including 3.3.0.
5
Can CVE-2021-38221 affect my application?
If your application uses bbs-go version 3.3.0 or lower, it is potentially vulnerable to CVE-2021-38221.