High severity8.8NVD Advisory· Published Mar 15, 2021· Updated Jun 17, 2026
CVE-2021-27890
CVE-2021-27890
Description
SQL Injection vulnerablity in MyBB before 1.8.26 via theme properties included in theme XML files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- github.com/mybb/mybb/security/advisories/GHSA-r34m-ccm8-mfhqnvdPatchRelease NotesThird Party Advisory
- blog.sonarsource.com/mybb-remote-code-execution-chainnvdExploitThird Party Advisory
- packetstormsecurity.com/files/161908/MyBB-1.8.25-Remote-Command-Execution.htmlnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.