A critical security vulnerability in vBulletin, a popular forum software, is being actively exploited in the wild.
Security researcher Ryan Dewhurst has observed exploitation attempts for the vulnerability, which can lead to remote code execution.
The vulnerability, with severity scores of 10/10 and 9.0/10, affects vBulletin versions 5.0.0 through 5.7.5 and 6.0.0 through 6.0.3, potentially allowing RCE capabilities.
Although patches have been released, many sites remain at risk due to delayed patching by administrators of vBulletin forums.