Security Advisory

CVE-2023-43187

9.8
CRITICAL

Vulnerability Description

A remote code execution (RCE) vulnerability in the xmlrpc.php endpoint of NodeBB Inc NodeBB forum software prior to v1.18.6 allows attackers to execute arbitrary code via crafted XML-RPC requests.
Published Date September 27, 2023
Official Source NIST NVD Advisory