A vulnerability classified as critical was found in prompts.chat. This issue affects some unknown processing of the component Authorization Header Handler. The manipulation of the argument token results in server-side request forgery.
This vulnerability is cataloged as CVE-2026-22664. The attack may be launched remotely. There is no exploit available.
A patch should be applied to remediate this issue.
A vulnerability was found in Like Plugin 3.0.0 on MyBB. It has been classified as problematic. Affected by this issue is some unknown functionality of the component Post Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2018-25247. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability was found in OCS Inventory NG Server up to 2.12.3. It has been classified as problematic. This issue affects some unknown processing of the file /ocsinventory of the component HTTP Header Handler. Performing a manipulation of the argument User-Agent results in cross site scripting.
This vulnerability is cataloged as CVE-2026-22675. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to install a patch to address this issue.