vBulletin has released a security patch for supported versions 6.1.6 through 6.2.1 to address a vulnerability in the template runtime.
If you are running one of these supported versions, I strongly recommend applying the official security patch as soon as possible.
After reviewing the changes included in the patch, my analysis suggests that the vulnerable code also appears to exist in older versions of vBulletin, including earlier 6.x releases, 5.x, and 4.x. However, this is my technical assessment and not an official statement from vBulletin.
Although the full technical details of the vulnerability have not been publicly disclosed, any unpatched security vulnerability should be treated seriously.
Administrators running older, unsupported versions should be aware that these releases may no longer receive official security updates. If your forum is still on one of these versions, it would be prudent to evaluate whether your installation could be affected and consider your available options, including upgrading to a supported release.
As always, before applying any updates or making changes to your forum, ensure that you have a current backup of both your files and database.
For the official announcement and instructions, please refer to:
If you are running one of these supported versions, I strongly recommend applying the official security patch as soon as possible.
After reviewing the changes included in the patch, my analysis suggests that the vulnerable code also appears to exist in older versions of vBulletin, including earlier 6.x releases, 5.x, and 4.x. However, this is my technical assessment and not an official statement from vBulletin.
Although the full technical details of the vulnerability have not been publicly disclosed, any unpatched security vulnerability should be treated seriously.
Administrators running older, unsupported versions should be aware that these releases may no longer receive official security updates. If your forum is still on one of these versions, it would be prudent to evaluate whether your installation could be affected and consider your available options, including upgrading to a supported release.
As always, before applying any updates or making changes to your forum, ensure that you have a current backup of both your files and database.
For the official announcement and instructions, please refer to:


