CVE-2024-12767
LOW 3.5EPSS 0.3%
The buddyboss-platform WordPress plugin before 2.7.60 lacks proper access controls and allows a logged-in user to view comments on private posts
- CVSS v3.1
- 3.5 LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N - EPSS
- 0.33% chance of exploitation in the next 30 days, 25th percentile
- Published
- 2025-05-15
- Updated
- 2025-11-13