vBulletin 3.7.1 PL2 and 3.6.10 PL2
vBulletin 3.7.1 PL2 / vBulletin 3.6.10 PL2
An XSS flaw affecting the vBulletin URL redirection system has been identified. It could allow an attacker to trick a moderator or admin into unwittingly performing an action in either the front-end or control panel that they had not intended. To resolve this issue, it is necessary to release [...]



