๐Ÿ” CVE Alert

CVE-2026-4816

UNKNOWN 0.0

Reflected Cross Site Scripting (XSS) vulnerability in Support Board

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A Reflected Cross Site Scripting (XSS) vulnerability has been found in Support Board v3.7.7. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending the victim a malicious URL using the 'search' parameter in '/supportboard/include/articles.php'. This vulnerability can be exploited to steal sensitive user data, such as session cookies, or to perform actions on behalf of the user.

CWE CWE-79
Vendor schiocco
Product support board
Published Mar 25, 2026
Last Updated Mar 25, 2026
Stay Ahead of the Next One

Get instant alerts for schiocco support board

Be the first to know when new unknown vulnerabilities affecting schiocco support board are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Schiocco / Support Board
0 โ‰ค 3.7.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
incibe.es: https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-support-board-schiocco