xenforo forum software = problems with xenforo software server based = problems with our server both = Xenforo and server problems arrowchat = problems with the live chat system Blind SQL Injection (xenforo and server) Vulnerable Javascript library (xenforo) Application error message (xenforo) Directory listing (server) Error message on page (xenforo) HTML form without CSRF protection (xenforo) Slow HTTP Denial of Service Attack (server) User credentials are sent in clear text (server) Cookie without HttpOnly flag set (server and xenforo) Cookie without Secure flag set (server and xenforo) Documentation file (xenforo and server) Login page password-guessing attack (server) Possible sensitive directories (server) Possible sensitive files (server) Slow response time (server) Broken links (xenforo) Content type is not specified (xenforo) Email address found (server) GHDB: Administrative login page (xenforo, server and arrowchat) GHDB: Possible admin login page (arrowchat) Password type input with auto-complete enabled (xenforo) Possible server path disclosure (Unix) (server) Possible username or password disclosure (server and xenforo)