Denial of Service Vulnerability in UBB.threads by UBB Central
CVE-2026-54224
7.1HIGH
What is CVE-2026-54224?
UBB.threads is susceptible to a Denial of Service (DoS) attack, where an authenticated attacker can overload the system by sending numerous concurrent requests to view user profiles. This results in the depletion of database resources, leading to complete denial of access to the application for other legitimate users. While the vulnerability has been confirmed in version 7.7.5, other versions may also be impacted. Proper measures should be taken to secure the application and prevent potential exploitation.
Affected Version(s)
UBB.threads 0 <= 7.7.5
References
CVSS V4
Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Kamil Szczurowski (Securitum)
Michał Wnękowicz (Securitum)
