XenForo
cpe:2.3:a:xenforo:xenforo:*:*:*:*:*:*:*
- < 2.3.7
A security vulnerability has been identified in XenForo versions prior to 2.3.7, affecting Passkey-based authentication. This issue allows an attacker to compromise the security of Passkeys associated with user accounts.
Exploitation of this vulnerability could lead to unauthorized access or manipulation of Passkey-based authentication, potentially allowing attackers to impersonate users or gain unauthorized privileges.
Users are advised to upgrade to XenForo version 2.3.7 or apply the available patch. Instructions for upgrading are available in the XenForo 2 Manual. XenForo Cloud customers will receive the upgrade automatically.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.