CVE-2026-4816
Reflected Cross Site Scripting (XSS) vulnerability in Support Board
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A Reflected Cross Site Scripting (XSS) vulnerability has been found in Support Board v3.7.7. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending the victim a malicious URL using the 'search' parameter in '/supportboard/include/articles.php'. This vulnerability can be exploited to steal sensitive user data, such as session cookies, or to perform actions on behalf of the user.
| CWE | CWE-79 |
| Vendor | schiocco |
| Product | support board |
| Published | Mar 25, 2026 |
| Last Updated | Mar 25, 2026 |
Stay Ahead of the Next One
Get instant alerts for schiocco support board
Be the first to know when new unknown vulnerabilities affecting schiocco support board are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Schiocco / Support Board
0 โค 3.7.7