All 6 CVE vulnerabilities found in 4gaBoards, with AI-generated Chinese analysis, references, and POCs.
Vendor: RARgames
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-53959 | 4gaBoards: Mass Information Disclosure (Internal PII Leakage) on /api/users to any authenticated user CWE-200 | 6.5 | Medium | 2026-08-18 |
| CVE-2026-53958 | 4gaBoards: SSO Pre-Account Takeover / Hijacking via Mass Assignment CWE-287 | 7.6 | High | 2026-08-18 |
| CVE-2026-50186 | 4gaBoards: Path Traversal leading to Arbitrary File Read and Deletion in Board Export CWE-22 | 8.8 | High | 2026-08-18 |
| CVE-2026-50191 | 4gaBoards: Pre-Account Takeover via SSO Email Linkage CWE-287 | 8.8 | High | 2026-08-18 |
| CVE-2026-41419 | 4ga Boards: Import Path Traversal Leads to Arbitrary File Read CWE-22 | 7.6 | High | 2026-04-24 |
| CVE-2026-41418 | 4ga Boards: User Enumeration via Timing Side-Channel in Authentication Endpoint CWE-208 | 5.3 | Medium | 2026-04-24 |
All 6 known CVE vulnerabilities affecting 4gaBoards with full Chinese analysis, references, and POCs where available.