CVE@CVEnewDisclosure
The text announces CVE‑2025‑71278, explaining that XenForo versions before 2.3.5 permit OAuth2 clients to request unauthorized scopes, with no PoC, patch, or exploitation details included.
CVEarity@CVEarityGeneral
The tweet simply announces CVE-2025-71278 with a high severity score, providing no further technical, exploit, or mitigation information.
The Hacker Wire@TheHackerWireDisclosure
CVE‑2025‑71278 is a high severity vulnerability identified in XenForo versions prior to 2.3.5, allowing OAuth2 clients to obtain unauthorized scopes; the announcement emphasizes the initial details without indicating active exploits or available fixes.
CVEFind.com@CveFindComPatch
The advisory highlights the CVE-2025-71278 threat in XenForo, provides technical details about unauthorized OAuth2 scopes, and urges users to update to version 2.3.5 to patch the vulnerability.