Loading
XenForo before 2.3.7 contains a security issue affecting Passkeys that have been added to user accounts. An attacker may be able to compromise the security of Passkey-based authentication.
Use CWE-287, Xenforo vendor hub and Xenforo product page to widen CVE-2025-71279 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-38458, CVE-2024-38457 and CVE-2025-71282 for nearby disclosures in the same product family.