MyBB SQL Injection and XSRF Vulnerabilities

Application: MyBB
Affected Version: 1.2.11 and prior versions.
Vendor’s URL: http://www.mybboard.net/
Bug Type: Cross Site Scripting, SQL Injection
Risk Level: Critical

Solution:
Update to version 1.2.12.