Description
SQL injection vulnerability in the users data handler in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Remediation
References
Related Vulnerabilities
Magento Session Fixation Vulnerability (CVE-2019-7849)
Perl Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2018-12015)
WordPress Plugin WP REST API (WP API) Security Bypass (1.2.1)
WordPress Plugin Plugmatter Optin Feature Box Multiple SQL Injection Vulnerabilities (2.0.13)
XWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-36095)