CyberSecurity News
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats
AI summary
NodeBB has patched eight high-severity security flaws that were discovered by Aikido Security's AI pentest agents in a six-hour review of the forum software's source code. The vulnerabilities, which were made public along with exploit code, affect all versions prior to 4.14.0. NodeBB has released fixes for the issues, with administrators advised to update to version 4.14.2. The vulnerabilities expose admin access and private chats, and some can be exploited with a simple settings change.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

