bbPress through 1.0.2 has XSS in /bb-login.php url via the re parameter.
References:GSA_kwCzR0hTQS00ODNmLXd4dzktM3Jwcc0_cA
bbPress Cross-site Scripting (XSS) vulnerability
Affected Packages | Affected Versions | Fixed Versions | |
---|---|---|---|
packagist:bbpress/bbpress | <= 1.0.2 | No known fixed version | |
Affected Version RangesAll affected versions |