CVE-2026-73321 | XenForo up to 2.3.12 BBCode parser recursion

SecurityVulns

A vulnerability has been found in XenForo up to 2.3.12 and classified as problematic. This impacts an unknown function of the component BBCode parser. The manipulation leads to uncontrolled recursion.

This vulnerability is referenced as CVE-2026-73321. Remote exploitation of the attack is possible. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More