Pybbs
Vendor:
First CVE: Nov 1, 2021 · Active for 4 years
16
Total CVEs
More Total CVEs than 92% of tracked products
5.3
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
5.3
Avg CVSS
Higher Avg CVSS than 9% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Pybbs over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 1, 2021
4 years ago
Most Recent CVE
Oct 27, 2025
271 days ago
CVE Severity & Scoring
Pybbs16 CVEs
13%
81%
All CVEs352,708 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network16 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low14 (87.5%)
High2 (12.5%)
Unknown0 (0.0%)
User Interaction
None6 (37.5%)
Unknown0 (0.0%)
Required10 (62.5%)
Privileges Required
Low8 (50.0%)
High0 (0.0%)
None8 (50.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (16 CVEs).
16 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-8550MEDIUM A vulnerability was found in atjiu pybbs up to 6.0.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/topic/list. | Aug 5, 2025 | 5.4 | 30 | NO | YES |
CVE-2020-28702HIGH A SQL injection vulnerability in TopicMapper.xml of PybbsCMS v5.2.1 allows attackers to access sensitive database information. | Nov 1, 2021 | 7.5 | 25 | NO | NO |
CVE-2025-8813MEDIUM A vulnerability has been found in atjiu pybbs up to 6.0.0 and classified as problematic. This vulnerability affects the function changeLanguage of the file src/main/java/co/yiiu/py | Aug 10, 2025 | 6.1 | 22 | NO | NO |
CVE-2025-8554MEDIUM A vulnerability, which was classified as problematic, has been found in atjiu pybbs up to 6.0.0. This issue affects some unknown processing of the file /admin/user/list. The manipu | Aug 5, 2025 | 5.4 | 21 | NO | NO |
CVE-2025-8553MEDIUM A vulnerability classified as problematic was found in atjiu pybbs up to 6.0.0. This vulnerability affects unknown code of the file /admin/sensitive_word/list. The manipulation of | Aug 5, 2025 | 5.4 | 21 | NO | NO |
CVE-2025-8551MEDIUM A vulnerability was found in atjiu pybbs up to 6.0.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /admin/comment/list. The ma | Aug 5, 2025 | 5.4 | 21 | NO | NO |
CVE-2022-23391MEDIUM A cross-site scripting (XSS) vulnerability in Pybbs v6.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload inserted into the Search box. | Feb 14, 2022 | 6.1 | 21 | NO | NO |
CVE-2025-8812MEDIUM A vulnerability, which was classified as problematic, was found in atjiu pybbs up to 6.0.0. This affects an unknown part of the file /api/settings of the component Admin Panel. The | Aug 10, 2025 | 5.4 | 20 | NO | NO |
CVE-2025-8555MEDIUM A vulnerability, which was classified as problematic, was found in atjiu pybbs up to 6.0.0. Affected is an unknown function of the file /search. The manipulation of the argument ke | Aug 5, 2025 | 5.4 | 20 | NO | NO |
CVE-2025-8547MEDIUM A vulnerability has been found in atjiu pybbs up to 6.0.0 and classified as critical. This vulnerability affects unknown code of the component Email Verification Handler. The manip | Aug 5, 2025 | 5.3 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (16 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
6.2% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (16 CVEs).
Media Mentions
Signals from CVEs in this product scope (16 CVEs).
Top CNAs Publishing CVEs For Pybbs
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 6.0 | 1 | 6.1 | 0.6% | 0 | 0 |
| 5.2.1 | 1 | 7.5 | 1.1% | 0 | 0 |