Skip to main content
Loading…
    CVE-2026-21663 — HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the banner-acl.php script of Revive Adserver. An attacker can craft a specific URL that includes an HTML pay — CVE Database · The Intelligence Room