CVE-2025-8551 | atjiu pybbs up to 6.0.0 /admin/comment/list Username cross site scripting (Issue 204 / EUVD-2025-23616)
A vulnerability marked as problematic has been reported in atjiu pybbs up to 6.0.0. This impacts an unknown function of the file /admin/comment/list. This manipulation of the argument Username causes cross site scripting.
The identification of this vulnerability is CVE-2025-8551. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.