Loading...
Loading...
The message_options function in includes/ucp/ucp_pm_options.php in phpBB before 3.0.13 does not properly validate the form key, which allows remote attackers to conduct CSRF attacks and change the full folder setting via unspecified vectors.
February 10, 2015
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2015-1432
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.