Description
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In version 2.28.0, improper escaping of tag names retrieved from History in Timeline (my_view_page.php) allows an attacker to inject HTML and, if CSP settings permit, achieve execution of arbitrary JavaScript, when displaying a tag that has been renamed or deleted. Version 2.28.1 contains a patch. Workarounds include editing offending History entries (using SQL) and wrapping `$this->tag_name` in a string_html_specialchars() call in IssueTagTimelineEvent::html().
INFO
Published Date :
2026-03-23T19:15:18.891Z
Last Modified :
2026-03-24T16:06:54.776Z
Source :
GitHub_M
AFFECTED PRODUCTS
The following products are affected by CVE-2026-33548 vulnerability.
| Vendors | Products |
|---|---|
| Mantisbt |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-33548.