CVE-2018-5331: Discuz Discuzx

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

Discuz! DiscuzX X3.4 has XSS via the view parameter to include/space/space_poll.php, as demonstrated by a mod=space do=poll request to home.php.

Affected products

  • Discuz Discuzx: version x3.4 only

Published 2018-01-10. Last modified 2026-06-17.