MyBB Community Forums

Full Version: CSRF Form Protection
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Hello Mybb community,

Today i scanned my forum with vulnerability scanner and showed me that the forum has no CSRF Form Protection,can anyone tell me how to fix the problem ?

Sincerly
Wolfz
MyBB does have CSRF protection, via the my_post_key field ($mybb->post_code). I advise you do not use scanners. If it's telling you there's no CSRF protection when it's used everywhere, it can't be that intelligent.

If you really want to search for vulnerabilities then you might want to consider taking a course in basic web application security. The human brain is a thousand times more reliable than any scanner.