CVE-2026-35055 | XenForo up to 2.2.17/2.3.8 cross site scripting
A vulnerability has been found in XenForo up to 2.2.17/2.3.8 and classified as problematic. The affected element is an unknown function. Performing a manipulation results in cross site scripting.
This vulnerability is known as CVE-2026-35055. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.