Vulnerabilidades em MyBB
36 resultadosAnálise Vexday
MyBB apresenta 6 vulnerabilidades registradas, predominantemente injeção de código (XSS, CWE-79), sem nenhuma crítica ou sob exploração ativa no momento. O risco permanece contido, mas uma vulnerabilidade foi publicada nos últimos 90 dias, demandando monitoramento de patches recentes.
CVE-2022-24734HIGHRemote code execution in mybbEPSS 77.8%CVE-2022-39265HIGHMail settings' command parameter injection in mybbEPSS 2.4%CVE-2020-15139HIGHXSS in MyBBEPSS 1.3%CVE-2026-45117CRITICALMyBB: Installer database configuration RCEEPSS 1.1%CVE-2023-53979HIGHMyBB 1.8.32 Authenticated Remote Code Execution via Chained VulnerabilitiesEPSS 0.8%CVE-2024-23335MEDIUMBackups directory .htaccess deletion in. MyBBEPSS 0.6%CVE-2026-45734MEDIUMMyBB: Default CAPTCHA missing invalidationEPSS 0.6%CVE-2026-45118CRITICALMyBB: Contact page reflected XSSEPSS 0.5%CVE-2025-48940HIGHMyBB's upgrade component vulnerable to local file inclusionEPSS 0.5%CVE-2023-46251HIGHVisual editor persistent Cross-site Scripting (XSS) in MyBBEPSS 0.5%CVE-2024-23336MEDIUMIncomplete disallowed remote addresses list in MyBBEPSS 0.5%CVE-2026-46482MEDIUMMyBB: Security Question insufficient validationEPSS 0.4%CVE-2026-45116HIGHMyBB: Profile field type confusion XSSEPSS 0.4%CVE-2026-45115HIGHMyBB: Buddy/ignore list username XSSEPSS 0.4%CVE-2026-45125MEDIUMMyBB: Email User CRLF injectionEPSS 0.4%CVE-2026-45123MEDIUMMyBB: IPv6 SSRFEPSS 0.4%CVE-2026-47245MEDIUMMyBB: Buddy list corruptionEPSS 0.4%CVE-2026-45121MEDIUMMyBB: Insufficient permission check for calendar selectEPSS 0.3%CVE-2025-48941MEDIUMMyBB may disclosure unviewable threads' titles in searchesEPSS 0.3%CVE-2026-45122MEDIUMMyBB: Insufficient permission check for calendar event moveEPSS 0.3%