Denial of Service Vulnerability in UBB.threads by UBB Central
CVE-2026-54224

7.1HIGH

Key Information:

Vendor
CVE Published:
18 June 2026

What is CVE-2026-54224?

UBB.threads is susceptible to a Denial of Service (DoS) attack, where an authenticated attacker can overload the system by sending numerous concurrent requests to view user profiles. This results in the depletion of database resources, leading to complete denial of access to the application for other legitimate users. While the vulnerability has been confirmed in version 7.7.5, other versions may also be impacted. Proper measures should be taken to secure the application and prevent potential exploitation.

Affected Version(s)

UBB.threads 0 <= 7.7.5

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Kamil Szczurowski (Securitum)
Michał Wnękowicz (Securitum)
.