@joeress Hey Joe, I know forums are old news, but have you heard about the phpbb auth bug? Improper checking allows anyone to log in as any user, including admins. The admin control panel still needs a password, but they can get into moderator tools and add/move/remove posts which is a pretty big deal. https://www.cve.org/CVERecord?id=CVE-2026-48611
A message titled "URGENT WARNING: Critical phpBB Authentication Bypass - UPDATE TO 3.3.17 IMMEDIATELY" seems to be showing up on forums supposedly posted by an admin.



