I am not sure what this post is about? It is titled "Dear CyD Software Labs..." and so it is related to the guys from this company or whatever. From what I have understood, they were using miniBB as the embedded part of their software (which is allowed since miniBB is released under GPL), and they were putting their own requests into miniBB tables.
How this all is related to miniBB security? We are using completely different methods of data and database manipulation. And our recent version was scanned by Acunetix which is on top of vulnerabilities discovering software, so at least we know it comes without critical holes.
So I am not sure what should we fix and how miniBB could be related to all that.