CVE-2021-43334: XSS
Published Jan 26, 2022
·Updated
BuddyBoss Platform through 1.8.0 allows XSS via the Group Name or Group Description field.
Affected Software
1 affected component
Buddyboss BuddyBoss<=1.8.0
Event History
Jan 26, 2022
CVE Published
via MITRE·03:37 PM
Data Sourced
via MITRE·03:37 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-43334.
2
What is the severity rating of CVE-2021-43334?
CVE-2021-43334 has a severity rating of medium (5.4).
3
How does CVE-2021-43334 affect BuddyBoss Platform?
CVE-2021-43334 affects BuddyBoss Platform through version 1.8.0.
4
How can an attacker exploit CVE-2021-43334?
An attacker can exploit CVE-2021-43334 by injecting malicious code via the Group Name or Group Description field in BuddyBoss Platform.
5
Are there any known fixes or patches for CVE-2021-43334?
Yes, you can find fixes and patches for CVE-2021-43334 on the BuddyBoss Platform Releases page.