Unrated severityNVD Advisory· Published Jul 23, 2025· Updated Jul 23, 2025
CVE-2025-46171
CVE-2025-46171
Description
vBulletin 3.8.7 is vulnerable to a denial-of-service condition via the misc.php?do=buddylist endpoint. If an authenticated user has a sufficiently large buddy list, processing the list can consume excessive memory, exhausting system resources and crashing the forum.
Affected products
2- vBulletin/vBulletindescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- vbulletin.commitre
News mentions
0No linked articles in our index yet.