fof/byobu is a private discussions extension for Flarum forum. Affected versions were found to not respect private discussion disablement by users. Users of Byobu should update the extension to version 1.1.7, where this has been patched. Users of Byobu with Flarum 1.0 or 1.1 should upgrade to Flarum 1.2 or later, or evaluate the impact this issue has on your forum's users and choose to disable the extension if needed. There are no workarounds for this issue.
History

Wed, 23 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2022-08-01T21:50:10.000Z

Updated: 2025-04-23T17:54:25.677Z

Reserved: 2022-07-15T00:00:00.000Z

Link: CVE-2022-35921

cve-icon Vulnrichment

Updated: 2024-08-03T09:51:58.596Z

cve-icon NVD

Status : Modified

Published: 2022-08-01T22:15:10.403

Modified: 2024-11-21T07:11:58.017

Link: CVE-2022-35921

cve-icon Redhat

No data.