Description

A stored cross-site scripting (XSS) vulnerability in Simple Machines Forum v2.1.6 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Forum Name parameter.

INFO

Published Date :

2025-12-18T00:00:00.000Z

Last Modified :

2025-12-18T20:25:25.031Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-67163 vulnerability.

Vendors Products
Simplemachines
  • Simple Machine Forum
  • Simple Machines Forum
  • Smf

CVSS Vulnerability Scoring System