CVE 8.6 HIGH

MantisBT has Stored HTML Injection/XSS via Clone Issue Form_CVE-2026-34463

8.6 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.1 and prior contain a Stored XSS vulnerability. When cloning an issue originating from a Project other than the current one, the clone form (bug_report_page.php) prepends the source Project name before the category selector without proper escaping, allowing an attacker able to to inject HTML if they can set the Project's name (which typically requires manager or administrator access level). This issue has been resolved in version 2.28.2.

AI Analysis

Stored XSS vulnerability in MantisBT via clone issue form

Basic Information

ID CVE-2026-34463
Source GitHub_M
Published May 19, 2026 at 21:57

Affected Product

Vendor mantisbt
Product mantisbt
Version < 2.28.2
Affected Versions mantisbt mantisbt < 2.28.2

CWE Classification

AI Assessment

AI Score 8.6 / 10
AI Severity High
Vendor MantisBT
Product Mantis Bug Tracker
Version 2.28.1 and prior

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.