« Volver al listado

UBB

UBB Threads: vulnerabilidades y CVE

UBB Threads tiene 5 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE5
Últimos 12 meses5
Críticas0
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-54224Alta (7.1)0.40%—18 jun 2026
UBB.threads is vulnerable to Denial of Service (DoS). By sending multiple concurrent requests to view any user profile on instances with many registered users, an authenticated attacker can easily exhaust database…
CVE-2026-54223Alta (8.6)0.78%—18 jun 2026
UBB.threads is vulnerable to Path traversal, allowing attackers with privilege to edit templates to read and write any file on the application’s server that application has privileges to, what results in Remote Code…
CVE-2026-54221Media (5.1)0.45%—18 jun 2026
UBB.threads is vulnerable to Reflected XSS. The application improperly handles user input in certain requests, enabling attackers to execute arbitrary JavaScript in the context of a victim's browser by tricking them…
CVE-2026-54220Alta (8.6)0.22%—18 jun 2026
uBB.threads is vulnerable to a Cross-Site Request Forgery (CSRF) due to a lack of protective mechanisms. This allows an attacker to trick an authenticated user into executing unintended actions. Because vendor contact…
CVE-2026-54219Media (5.1)0.40%—18 jun 2026
UBB.threads is vulnerable to Stored XSS via user posts and user profile fields. The application fails to properly sanitize user input, allowing low privileged attackers to inject arbitrary JavaScript that executes in a…

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1210 Exploitation of Remote Services2
  2. T1005 Data from Local System1
  3. T1189 Drive-by Compromise1
  4. T1499 Endpoint Denial of Service1
  5. T1583.006 Web Services1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.