CVE-2026-4494 | atjiu pybbs 6.0.0 TopicApiController.java create cross site scripting (EUVD-2026-13756)
A vulnerability has been found in atjiu pybbs 6.0.0 and classified as problematic. This affects the function create of the file src/main/java/co/yiiu/pybbs/controller/api/TopicApiController.java. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2026-4494. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.