FUDForum 3.1.0 contains a cross-site scripting vulnerability. An attacker can inject JavaScript via index.php in the author parameter, thereby possibly stealing cookie-based authentication credentials and launching other attacks.
id: CVE-2021-27520
info:
name: FUDForum 3.1.0 - Cross-Site Scripting
author: r3Y3r53
severity
...