importantSYS.SOURCE: The Hacker News• 2026-07-24T13:11:06+05:30
NodeBB Addresses Eight AI-Identified Security Vulnerabilities Exposing Admin Access and Private Chats
NodeBB addressed eight high-severity security vulnerabilities identified by AI, including flaws enabling admin access and exposure of private chats, with all fixes included in version 4.14.2.
Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit them. Aikido Security rates all eight as high severity and says its AI pentest agents found them in a six-hour review of the forum software's source code.
Every version before 4.14.0 is affected. NodeBB has fixed them all, and administrators should be on 4.14.2.
The simplest one takes a settings change. A
*** END OF TRANSMISSION ***