Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 1.0 allows remote attackers to inject arbitrary web script via the size tag.
| Software | From | Fixed in |
|---|---|---|
| simple_machines / smf | 1.0_beta4.1 | 1.0_beta4.1.x |
| simple_machines / smf | 1.0_beta4p | 1.0_beta4p.x |
| simple_machines / smf | 1.0_beta5p | 1.0_beta5p.x |