The buddyboss-platform WordPress plugin before 2.7.60...
High severity
Unreviewed
Published
May 15, 2025
to the GitHub Advisory Database
•
Updated Jun 10, 2025
Description
Published by the National Vulnerability Database
May 15, 2025
Published to the GitHub Advisory Database
May 15, 2025
Last updated
Jun 10, 2025
The buddyboss-platform WordPress plugin before 2.7.60 lacks proper access controls and allows a logged-in user to view comments on private posts
References