CVE-2026-54224
Denial of Service in UBB.threads
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
UBB.threads is vulnerable to Denial of Service (DoS). By sending multiple concurrent requests to view any user profile on instances with many registered users, an authenticated attacker can easily exhaust database resources and completely deny access to the application for other users. Because vendor contact attempts were unsuccessful, the vulnerability has only been confirmed in version 7.7.5 but may also affect other versions.
| CWE | CWE-405 |
| Vendor | ubb systems |
| Product | ubb.threads |
| Published | Jun 18, 2026 |
| Last Updated | Jun 18, 2026 |
Stay Ahead of the Next One
Get instant alerts for ubb systems ubb.threads
Be the first to know when new unknown vulnerabilities affecting ubb systems ubb.threads are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
UBB Systems / UBB.threads
0 ≤ 7.7.5
References
Credits
Kamil Szczurowski (Securitum) Michał Wnękowicz (Securitum)