A vulnerability was identified in atjiu pybbs 6.0.0. This affects the function create of the file src/main/java/co/yiiu/pybbs/controller/api/TopicApiController.java. The manipulation leads to cross site scripting.
It is possible to initiate the attack remotely. The exploit is publicly available and might be used.
Attack Parameters
Impact Assessment
CVSS Vector v4.0