(:A cross-site scripting vulnerability has been identified in the External Links third-party module for phpBB.:A remote attacker can exploit it in order to execute arbitrary Javascript or HTML code by inciting their victim into following a specially formed link.::The vulnerability is located in the "url.php" script.::A proof of concept is available.)