CVE-2026-43621 | SimpleMachines SMF up to 2.1.7 Profile Loader User improper authorization

SecurityVulns

A vulnerability has been found in SimpleMachines SMF up to 2.1.7 and classified as critical. The impacted element is an unknown function of the component Profile Loader. This manipulation of the argument User causes improper authorization.

This vulnerability is tracked as CVE-2026-43621. The attack is possible to be carried out remotely. No exploit exists.

It is recommended to apply a patch to fix this issue.VulDB Recent EntriesRead More